ZeroHour

CVE-2019-4008

CVSS 3.1
9.8 critical
EPSS
2%p82
Published
()
Modified
Description

API Connect V2018.1 through 2018.4.1.1 is impacted by access token leak. Authorization tokens in some URLs can result in the tokens being written to log files. IBM X-Force ID: 155626.

Vendors
ibm
Products
api connect
Weakness
CWE-532
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.