IBM App Connect Enterprise 12.0.1.0 through 12.0.7.0and 13.0.1.0 under certain configurations could allow a privileged user to obtain JMS credentials.
                
            Metrics
Affected Vendors & Products
References
        | Link | Providers | 
|---|---|
| https://www.ibm.com/support/pages/node/7175396 | 
                     | 
            
History
                    Wed, 13 Aug 2025 00:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Ibm aix
         Linux Linux linux Kernel Microsoft Microsoft windows  | 
|
| CPEs | cpe:2.3:a:ibm:app_connect_enterprise:*:*:*:*:*:*:*:* cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*  | 
|
| Vendors & Products | 
        
        Ibm aix
         Linux Linux linux Kernel Microsoft Microsoft windows  | 
Tue, 21 Jan 2025 21:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Sat, 18 Jan 2025 15:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | IBM App Connect Enterprise 12.0.1.0 through 12.0.7.0and 13.0.1.0 under certain configurations could allow a privileged user to obtain JMS credentials. | |
| Title | IBM App Connect Enterprise information disclosure | |
| First Time appeared | 
        
        Ibm
         Ibm app Connect Enterprise  | 
|
| Weaknesses | CWE-1323 | |
| CPEs | cpe:2.3:a:ibm:app_connect_enterprise:12.0.1.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:app_connect_enterprise:12.0.7.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:app_connect_enterprise:13.0.1.0:*:*:*:*:*:*:*  | 
|
| Vendors & Products | 
        
        Ibm
         Ibm app Connect Enterprise  | 
|
| References | 
         | |
| Metrics | 
        
        cvssV3_1
         
  | 
Status: PUBLISHED
Assigner: ibm
Published: 2025-01-18T15:00:16.148Z
Updated: 2025-01-21T20:59:39.138Z
Reserved: 2024-10-14T12:05:13.491Z
Link: CVE-2024-49338
Updated: 2025-01-21T20:59:27.335Z
Status : Analyzed
Published: 2025-01-18T15:15:07.433
Modified: 2025-08-13T00:24:57.833
Link: CVE-2024-49338
No data.
ReportizFlow