← back
CVE-2018-1712

CVE-2018-1712

CVSS 8.6 HIGHEPSS 0.7%
IBM API Connect's Developer Portal 5.0.0.0 through 5.0.8.3 is vulnerable to Server Side Request Forgery. An attacker, using specially crafted input parameters can trick the server into making potentially malicious calls within the trusted network. IBM X-Force ID: 146370.
CVSS:3.0/A:L/AC:L/AV:N/C:H/I:L/PR:N/S:U/UI:N/E:U/RC:C/RL:O
Affected products
IBM · API Connect

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →