The Vigil@nce team watches public vulnerabilities impacting your computers, and then offers security solutions, a database and tools to fix them.

vulnerability alert CVE-2019-4256

IBM API Connect: weak encryption

Synthesis of the vulnerability

An attacker can act as a Man-in-the-Middle on IBM API Connect, in order to read or write data in the session.
Impacted products: IBM API Connect.
Severity of this bulletin: 2/4.
Consequences of an intrusion: data reading, data creation/edition.
Hacker's origin: internet server.
Creation date: 23/05/2019.
Références of this threat: CVE-2019-4256, ibm10882968, VIGILANCE-VUL-29391.

Description of the vulnerability

An attacker can act as a Man-in-the-Middle on IBM API Connect, in order to read ...
Full Vigil@nce bulletin... (Free trial)

Computer vulnerabilities tracking service

Vigil@nce provides an application vulnerability alert. The Vigil@nce vulnerability database contains several thousand vulnerabilities. The Vigil@nce computer vulnerability tracking service alerts your teams of vulnerabilities or threats impacting your information system. The technology watch team tracks security threats targeting the computer system.