Record summary

CVE-2018-1932 has a selected CVSS score of 4.9 (medium); EIP currently links 1 repository PoC. VulnCheck reports CVE-2018-1932 use in known ransomware campaigns.

Description

IBM API Connect 5.0.0.0 through 5.0.8.4 is affected by a vulnerability in the role-based access control in the management server that could allow an authenticated user to obtain highly sensitive information. IBM X-Force ID: 153175.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Feb 14, 2023 · VulnCheck
Reported exploitation
Observed · VulnCheck
Ransomware use
Observed · VulnCheck

Available material

Repository PoCs
1

Affected products and versions

1
ProductSourceVersion rangeStatus
CVE List, VulnCheck5.0.0.0affected
5.0.8.4affected

Proofs of concept

1

Repository PoCs

GitHubBKreisel/CVE-2018-1932XRepository PoCby BKreiselStars: 3Not analyzed9 files

160.0 KiB

GitHub

PoC details

References

4