Ibm

Api Management

6 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.22%
  • Published 31.07.2017 21:29:00
  • Last modified 20.04.2025 01:37:25

IBM API Connect 5.0.0.0 could allow a user to bypass policy restrictions and create non-compliant passwords which could be intercepted and decrypted using man in the middle techniques. IBM X-Force ID: 127160.

  • EPSS 0.15%
  • Published 18.03.2015 10:59:06
  • Last modified 12.04.2025 10:46:40

The developer portal in IBM API Management 3.0 before 3.0.4.1 does not properly restrict access to the public and private APIs, which allows remote authenticated users to obtain sensitive information or modify data via unspecified API calls.

  • EPSS 0.35%
  • Published 21.01.2015 15:17:01
  • Last modified 12.04.2025 10:46:40

IBM API Management 3.0 before 3.0.4.0 IF1 allows remote attackers to obtain sensitive analytics information in an encrypted form via unspecified vectors.

  • EPSS 0.05%
  • Published 26.10.2014 18:55:05
  • Last modified 12.04.2025 10:46:40

IBM API Management 3.x before 3.0.1.0 allows local users to obtain sensitive ciphertext information via unspecified vectors.

  • EPSS 0.22%
  • Published 08.06.2014 23:55:02
  • Last modified 12.04.2025 10:46:40

Unspecified vulnerability in IBM API Management 3.0.0.0, when basic authentication is used for APIs, allows remote attackers to bypass intended restrictions on topology access, and obtain sensitive information, via unknown vectors.

  • EPSS 0.25%
  • Published 19.07.2013 14:36:13
  • Last modified 11.04.2025 00:51:21

Unspecified vulnerability in IBM API Management 2.0 before 2.0.0.1 allows remote attackers to access tenant APIs, and consequently obtain sensitive information or modify data, via unknown vectors.