Information Disclosure Vulnerability in IBM App Connect Enterprise Certified Container
CVE-2021-29906
5.1MEDIUM
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 8 October 2021
What is CVE-2021-29906?
The IBM App Connect Enterprise Certified Container version range 1.0 to 1.5 is prone to an information disclosure vulnerability. When configured with an IBM Cloud API key for connecting to various cloud-based connectors, it may inadvertently expose sensitive information to local users. It is crucial for organizations relying on this product to assess their configurations to prevent unintended data leaks and ensure robust security measures are in place to protect sensitive information.
Affected Version(s)
App Connect Enterprise Certified Container 1.0.0
App Connect Enterprise Certified Container 1.0.1
App Connect Enterprise Certified Container 1.0.2