cbcvebase.
CVE-2024-31895
published 2024-05-22

CVE-2024-31895: IBM App Connect Enterprise 12.0.1.0 through 12.0.12.1 could allow an authenticated user to obtain sensitive user information using an expired access token. IBM…

medium6.5CVSS 3.1
AVNACLPRLUINSUCHINAN
IBM App Connect Enterprise 12.0.1.0 through 12.0.12.1 could allow an authenticated user to obtain sensitive user information using an expired access token. IBM X-Force ID: 288176.

Affected

2 ranges
VendorProductVersion rangeFixed in
ibmapp_connect_enterprise>= 12.0.1.0 < 12.0.12.212.0.12.2
ibmapp_connect_enterprise12.0.1.0 – 12.0.12.1