IBM Connections 5.0, 5.5, and 6.0 is vulnerable to an External Service Interaction attack, caused by improper validation of a request property. By submitting suitable payloads, an attacker could exploit this vulnerability to induce the Connections server to attack other systems. IBM X-Force ID: 148946.
2018-09-14T12:29:00.587
2024-11-21T04:00:22.740
Modified
CVSSv3.0: 4.9 (MEDIUM)
AV:N/AC:M/Au:S/C:P/I:N/A:P
6.8
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | connections | 5.0 | Yes |
Application | ibm | connections | 5.5 | Yes |
Application | ibm | connections | 6.0 | Yes |