CVE-2024-31895
published 2024-05-22CVE-2024-31895: IBM App Connect Enterprise 12.0.1.0 through 12.0.12.1 could allow an authenticated user to obtain sensitive user information using an expired access token. IBM…
medium6.5CVSS 3.1
AVNACLPRLUINSUCHINAN
IBM App Connect Enterprise 12.0.1.0 through 12.0.12.1 could allow an authenticated user to obtain sensitive user information using an expired access token. IBM X-Force ID: 288176.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | app_connect_enterprise | >= 12.0.1.0 < 12.0.12.2 | 12.0.12.2 |
| ibm | app_connect_enterprise | 12.0.1.0 – 12.0.12.1 | — |