Vulnerability Description
IBM API Connect 2018.4.1.0 through 2018.4.1.12 could allow an attacker to launch phishing attacks by tricking the server to generate user registration emails that contain malicious URLs. IBM X-Force ID: 177933.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Api Connect | >= 2018.4.1.0, <= 2018.4.1.12 |
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/177933VDB EntryVendor Advisory
- https://www.ibm.com/support/pages/node/6324763Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/177933VDB EntryVendor Advisory
- https://www.ibm.com/support/pages/node/6324763Vendor Advisory
FAQ
What is CVE-2020-4337?
CVE-2020-4337 is a vulnerability with a CVSS score of 6.5 (MEDIUM). IBM API Connect 2018.4.1.0 through 2018.4.1.12 could allow an attacker to launch phishing attacks by tricking the server to generate user registration emails that contain malicious URLs. IBM X-Force I...
How severe is CVE-2020-4337?
CVE-2020-4337 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-4337?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Api Connect.