IBM App Connect Enterprise
cpe:2.3:a:ibm:app_connect_enterprise:*:*:*:*:*:*:*
- >= 12.0.1.0, <= 12.0.7.0
- 13.0.1.0
A vulnerability exists in IBM App Connect Enterprise versions 12.0.1.0 through 12.0.7.0 and 13.0.1.0, which under certain configurations, could allow a privileged user to obtain Java Message Service (JMS) credentials. This issue is related to improper management of sensitive trace data.
Exploitation of this vulnerability could lead to unauthorized access to JMS credentials, potentially allowing for further privileged actions or access within the application.
Users are advised to upgrade to IBM App Connect Enterprise version 12.0.12.8 or 13.0.1.1, depending on their current version. The APAR IT46982 is available for both versions.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.