ibm.comConfirmation
http://www.ibm.com/support/docview.wss?uid=ibm10793601 CVE-2018-1932
MEDIUMRansomware
IBM api_connect Exposure of Sensitive Information to an Unauthorized Actor
Record summary
CVE-2018-1932 has a selected CVSS score of 4.9 (medium); EIP currently links 1 repository PoC. VulnCheck reports CVE-2018-1932 use in known ransomware campaigns.
Description
IBM API Connect 5.0.0.0 through 5.0.8.4 is affected by a vulnerability in the role-based access control in the management server that could allow an authenticated user to obtain highly sensitive information. IBM X-Force ID: 153175.
Description source: CVE List
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Feb 14, 2023 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
- Ransomware use
- Observed · VulnCheck
Available material
- Repository PoCs
- 1
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
API ConnectBrowse IBM / API Connect | CVE List, VulnCheck | 5.0.0.0 | affected |
| 5.0.8.4 | affected |
Proofs of concept
1Repository PoCs
GitHubBKreisel/CVE-2018-1932XRepository PoCby BKreiselStars: 3Not analyzed9 files
References
4106486vdb entry
http://www.securityfocus.com/bid/106486 ibm-api-cve20181932-info-disc(153175)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/153175 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2018-1932