← Back to browse · API

CVE-2019-4202

Severity
CRITICAL
CVSS
10.0
EPSS
0.04223
Risk score
41.48
CISA KEV
No
PoC
No
Published
2019-04-15
Modified
2024-09-17
First seen
2026-08-07
Aliases
EUVD-2019-13809, GHSA-56H8-9M42-6287
Products
IBM:API Connect 5.0.0.0, IBM:API Connect 5.0.8.6
Sources
euvd EUVD-2019-13809

Description

IBM API Connect 5.0.0.0 and 5.0.8.6 Developer Portal is vulnerable to command injection. An attacker with a specially crafted request can run arbitrary code on the server and gain complete access to the system. IBM X-Force ID: 159123.

References