CVE-2026-16180
- EPSS 0.22%
- Veröffentlicht 04.09.2026 16:42:50
- Zuletzt bearbeitet 09.09.2026 14:43:01
IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.28 and IBM Integration Bus for z/OS 10.1.0.0 through 10.1.0.7 Toolkit could allow an authenticated user to cause a denial-of-service condition due to improper validati...
CVE-2026-16689
- EPSS 0.12%
- Veröffentlicht 04.09.2026 16:42:13
- Zuletzt bearbeitet 08.09.2026 18:17:35
IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.28 and IBM Integration Bus for z/OS 10.1.0.0 through 10.1.0.7 could allow a local attacker to obtain sensitive information due to improper logging of credentials.
CVE-2026-17440
- EPSS 0.1%
- Veröffentlicht 04.09.2026 16:37:09
- Zuletzt bearbeitet 09.09.2026 14:12:06
IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.28 and IBM Integration Bus for z/OS 10.1.0.0 through 10.1.0.7 could allow a local attacker to cause a denial of service due to uncontrolled recursion.
CVE-2026-17442
- EPSS 0.11%
- Veröffentlicht 04.09.2026 16:36:02
- Zuletzt bearbeitet 10.09.2026 16:17:08
IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.28 and IBM Integration Bus for z/OS 10.1.0.0 through 10.1.0.7 could allow a local attacker to obtain sensitive information due to credentials being written to trace lo...
CVE-2026-17443
- EPSS 0.29%
- Veröffentlicht 04.09.2026 16:33:05
- Zuletzt bearbeitet 09.09.2026 16:10:14
IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.28 and IBM Integration Bus for z/OS 10.1.0.0 through 10.1.0.7 could allow a remote authenticated attacker to obtain sensitive information due to an XML external entity...
CVE-2026-17444
- EPSS 0.29%
- Veröffentlicht 04.09.2026 16:32:47
- Zuletzt bearbeitet 10.09.2026 21:17:21
IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.28 and IBM Integration Bus for z/OS 10.1.0.0 through 10.1.0.7 could allow a remote authenticated attacker to obtain sensitive information due to an XML external entity...
CVE-2026-19649
- EPSS 0.12%
- Veröffentlicht 04.09.2026 15:18:16
- Zuletzt bearbeitet 09.09.2026 14:55:42
IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.28 and IBM Integration Bus for z/OS 10.1.0.0 through 10.1.0.7 could allow a local attacker to obtain sensitive information due to improper logging of database credenti...
CVE-2026-78543
- EPSS 0.36%
- Veröffentlicht 04.09.2026 15:10:34
- Zuletzt bearbeitet 09.09.2026 14:50:54
IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.28 and IBM Integration Bus for z/OS 10.1.0.0 through 10.1.0.7 could allow a remote attacker to cause a denial of service due to an infinite loop.
CVE-2026-81832
- EPSS 0.28%
- Veröffentlicht 04.09.2026 15:07:39
- Zuletzt bearbeitet 08.09.2026 21:59:22
IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.28 and IBM Integration Bus for z/OS 10.1.0.0 through 10.1.0.7 SAP Adapter is vulnerable to an XML external entity (XXE) attack.
CVE-2026-3602
- EPSS 0.19%
- Veröffentlicht 30.06.2026 19:19:47
- Zuletzt bearbeitet 20.07.2026 15:16:37
IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.26 and IBM Integration Bus for z/OS 10.1.0.0 through 10.1.0.7 is vulnerable to SQL injection. A remote attacker could socially engineer a user into accidentally creati...