CVE-2019-4402

EUVD-2019-14009
IBM API Connect 2018.1 through 2018.4.1.6 developer portal could allow an unauthorized user to cause a denial of service via an unprotected API. IBM X-Force ID: 162263.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
ibmCNA
8.6 HIGH
NETWORK
LOW
NONE
CVSS:3.0/A:H/C:N/AC:L/AV:N/S:C/PR:N/I:N/UI:N/RC:C/RL:O/E:U
Base Score
CVSS 3.x
EPSS Score
Percentile: 59%
Affected Products (NVD)
VendorProductVersion
ibmapi_connect
2018.1.0 ≤
𝑥
≤ 2018.4.1.6
𝑥
= Vulnerable software versions