← back
CVE-2019-4609

CVE-2019-4609

CVSS 5.9 MEDIUMEPSS 0.8%
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.9EPSS 0.8%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
18 Dec 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
IBM API Connect 2018.4.1.7 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 168510.
CVSS:3.0/S:U/C:H/AV:N/A:N/AC:H/UI:N/PR:N/I:N/RC:C/E:U/RL:O
Affected products
IBM · API Connect