← back
CVE-2020-4346medium

CVE-2020-4346

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 5.3epss 1.1%
exploitation probability
1.1%top 36% of all CVEs
observed exploitation
nono source reports it
IBM API Connect's V2018.4.1.0 through 2018.4.1.10 management server has an unsecured api which can be exploited by an unauthenticated attacker to obtain sensitive information. IBM X-Force ID: 178322.
CVSS:3.0/A:N/AV:N/I:N/S:U/UI:N/AC:L/C:L/PR:N/RL:O/RC:C/E:U
Affected products
IBM · API Connect