IBM / Api Management
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2017-1386 | IBM API Connect 5.0.0.0 could allow a user to bypass policy restrictions and create non-compliant passwords which could be intercepted and decrypted using man… | MEDIUM | 5.9 | Jul 31, 2017 |
| CVE-2015-0149 | The developer portal in IBM API Management 3.0 before 3.0.4.1 does not properly restrict access to the public and private APIs, which allows remote authenticat… | MEDIUM | 5.5 | Mar 18, 2015 |
| CVE-2014-6172 | IBM API Management 3.0 before 3.0.4.0 IF1 allows remote attackers to obtain sensitive analytics information in an encrypted form via unspecified vectors. | MEDIUM | 5.0 | Jan 21, 2015 |
| CVE-2014-6133 | IBM API Management 3.x before 3.0.1.0 allows local users to obtain sensitive ciphertext information via unspecified vectors. | LOW | 2.1 | Oct 26, 2014 |
| CVE-2014-3036 | Unspecified vulnerability in IBM API Management 3.0.0.0, when basic authentication is used for APIs, allows remote attackers to bypass intended restrictions on… | MEDIUM | 4.3 | Jun 8, 2014 |
| CVE-2013-0559 | Unspecified vulnerability in IBM API Management 2.0 before 2.0.0.1 allows remote attackers to access tenant APIs, and consequently obtain sensitive information… | MEDIUM | 6.4 | Jul 18, 2013 |
Showing 1 to 6 of 6 CVEs