IBM App Connect Enterprise
cpe:2.3:a:ibm:app_connect_enterprise:*:*:*:*:*:*:*
- >= 13.0.1.0, <= 13.0.2.1
- >= 12.0.1.0, <= 12.0.12.10
A vulnerability exists in IBM App Connect Enterprise versions 12.0.1.0 through 12.0.12.10 and 13.0.1.0 through 13.0.2.1. This vulnerability could allow an authenticated user to write arbitrary files to the system during the deployment of BAR configuration. The issue arises from improper restrictions on pathnames in certain directories.
Exploitation of this vulnerability could lead to unauthorized writing of files on the system, potentially allowing for further exploitation or disruption of the application.
Users are advised to apply the interim fix for APAR IT47533, available for version 13.0.2.1 and 12.0.12.10, through IBM Fix Central.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.