Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2018-1774

IBM API Connect 5.0.0.0, 5.0.8.4, 2018.1 and 2018.3.6 is vulnerable to CSV injection via the developer portal and analytics that could contain malicious commands that would be executed once opened by an administrator. IBM X-Force ID: 148692.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 40.6%
CVSS Severity
CVSS v3 Score 8.9
CVSS v2 Score 6.8
Products affected by CVE-2018-1774
  • Ibm » Api Connect » Version: 2018.1.0
    cpe:2.3:a:ibm:api_connect:2018.1.0
  • Ibm » Api Connect » Version: 2018.2.1
    cpe:2.3:a:ibm:api_connect:2018.2.1
  • Ibm » Api Connect » Version: 2018.2.10
    cpe:2.3:a:ibm:api_connect:2018.2.10
  • Ibm » Api Connect » Version: 2018.2.11
    cpe:2.3:a:ibm:api_connect:2018.2.11
  • Ibm » Api Connect » Version: 2018.2.2
    cpe:2.3:a:ibm:api_connect:2018.2.2
  • Ibm » Api Connect » Version: 2018.2.3
    cpe:2.3:a:ibm:api_connect:2018.2.3
  • Ibm » Api Connect » Version: 2018.2.4
    cpe:2.3:a:ibm:api_connect:2018.2.4
  • Ibm » Api Connect » Version: 2018.2.5
    cpe:2.3:a:ibm:api_connect:2018.2.5
  • Ibm » Api Connect » Version: 2018.2.6
    cpe:2.3:a:ibm:api_connect:2018.2.6
  • Ibm » Api Connect » Version: 2018.2.7
    cpe:2.3:a:ibm:api_connect:2018.2.7
  • Ibm » Api Connect » Version: 2018.2.8
    cpe:2.3:a:ibm:api_connect:2018.2.8
  • Ibm » Api Connect » Version: 2018.2.9
    cpe:2.3:a:ibm:api_connect:2018.2.9
  • Ibm » Api Connect » Version: 2018.3.1
    cpe:2.3:a:ibm:api_connect:2018.3.1
  • Ibm » Api Connect » Version: 2018.3.2
    cpe:2.3:a:ibm:api_connect:2018.3.2
  • Ibm » Api Connect » Version: 2018.3.3
    cpe:2.3:a:ibm:api_connect:2018.3.3
  • Ibm » Api Connect » Version: 2018.3.4
    cpe:2.3:a:ibm:api_connect:2018.3.4
  • Ibm » Api Connect » Version: 2018.3.5
    cpe:2.3:a:ibm:api_connect:2018.3.5
  • Ibm » Api Connect » Version: 2018.3.6
    cpe:2.3:a:ibm:api_connect:2018.3.6
  • Ibm » Api Connect » Version: 5.0.0.0
    cpe:2.3:a:ibm:api_connect:5.0.0.0
  • Ibm » Api Connect » Version: 5.0.0.1
    cpe:2.3:a:ibm:api_connect:5.0.0.1
  • Ibm » Api Connect » Version: 5.0.1.0
    cpe:2.3:a:ibm:api_connect:5.0.1.0
  • Ibm » Api Connect » Version: 5.0.2.0
    cpe:2.3:a:ibm:api_connect:5.0.2.0
  • Ibm » Api Connect » Version: 5.0.3.0
    cpe:2.3:a:ibm:api_connect:5.0.3.0
  • Ibm » Api Connect » Version: 5.0.4.0
    cpe:2.3:a:ibm:api_connect:5.0.4.0
  • Ibm » Api Connect » Version: 5.0.5.0
    cpe:2.3:a:ibm:api_connect:5.0.5.0
  • Ibm » Api Connect » Version: 5.0.6.0
    cpe:2.3:a:ibm:api_connect:5.0.6.0
  • Ibm » Api Connect » Version: 5.0.6.1
    cpe:2.3:a:ibm:api_connect:5.0.6.1
  • Ibm » Api Connect » Version: 5.0.6.2
    cpe:2.3:a:ibm:api_connect:5.0.6.2
  • Ibm » Api Connect » Version: 5.0.6.3
    cpe:2.3:a:ibm:api_connect:5.0.6.3
  • Ibm » Api Connect » Version: 5.0.6.4
    cpe:2.3:a:ibm:api_connect:5.0.6.4
  • Ibm » Api Connect » Version: 5.0.6.5
    cpe:2.3:a:ibm:api_connect:5.0.6.5
  • Ibm » Api Connect » Version: 5.0.6.6
    cpe:2.3:a:ibm:api_connect:5.0.6.6
  • Ibm » Api Connect » Version: 5.0.7.0
    cpe:2.3:a:ibm:api_connect:5.0.7.0
  • Ibm » Api Connect » Version: 5.0.7.1
    cpe:2.3:a:ibm:api_connect:5.0.7.1
  • Ibm » Api Connect » Version: 5.0.7.2
    cpe:2.3:a:ibm:api_connect:5.0.7.2
  • Ibm » Api Connect » Version: 5.0.8.0
    cpe:2.3:a:ibm:api_connect:5.0.8.0
  • Ibm » Api Connect » Version: 5.0.8.1
    cpe:2.3:a:ibm:api_connect:5.0.8.1
  • Ibm » Api Connect » Version: 5.0.8.2
    cpe:2.3:a:ibm:api_connect:5.0.8.2
  • Ibm » Api Connect » Version: 5.0.8.3
    cpe:2.3:a:ibm:api_connect:5.0.8.3
  • Ibm » Api Connect » Version: 5.0.8.4
    cpe:2.3:a:ibm:api_connect:5.0.8.4


Contact Us

Shodan ® - All rights reserved