Medium Severity
Security Bulletin: The web server or application server are configured in an insecure way in IBM Cloud Pak for Data Streams
Nov 18, 2020 7:01 pm EST
Categorized: Medium Severity
Share this post:
We have detected a low severity issue where our web server or application server are configured in an insecure way in IBM Cloud Pak for Data Streams. This is an internal feature only where users have no access to it but we have decided to address it.
Affected product(s) and affected version(s):
IBM Cloud Pak for Data Streams 3.0
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www.ibm.com/support/pages/node/6370043
Security Bulletin: IBM API Connect's provider org registration flow is vulnerable to impersonation and sensitive information leak. CVE-2020-4903)
Mar 6, 2021 7:00 pm EST | Medium Severity
IBM API Connect has addressed the following vulnerability. ...read more
Security Bulletin: IBM API Connect V10 is impacted by insecure communications during database replication (CVE-2020-4695)
Mar 6, 2021 7:00 pm EST | Medium Severity
IBM API Connect has addressed the following vulnerability. ...read more
Security Bulletin: IBM API Connect is impacted by multiple vulnerabilities in Java SE.
Mar 6, 2021 7:00 pm EST | Medium Severity
IBM API Connect has addressed the following vulnerability. ...read more