CVE-2018-1973: IBM API Connect

High severity, CVSS 7.2. EPSS: 2.3% chance of exploitation in the next 30 days.

IBM API Connect 5.0.0.0 through 5.0.8.4 allows a user with limited 'API Administrator level access to give themselves full 'Administrator' level access through the members functionality. IBM X-Force ID: 153914.

Affected products

  • IBM API Connect: from 5.0.0.0, up to and including 5.0.8.4

Published 2018-12-20. Last modified 2026-06-17.