VYPR
High severity7.2NVD Advisory· Published Sep 3, 2020· Updated Jun 17, 2026

CVE-2020-4638

CVE-2020-4638

Description

IBM API Connect's API Manager 2018.4.1.0 through 2018.4.1.12 is vulnerable to privilege escalation. An invitee to an API Provider organization can escalate privileges by manipulating the invitation link. IBM X-Force ID: 185508.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • IBM/API Connect3 versions
    cpe:2.3:a:ibm:api_connect:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:ibm:api_connect:*:*:*:*:*:*:*:*range: >=2018.4.1.0,<=2018.4.1.12
    • (no CPE)range: 2018.4.1.0 - 2018.4.1.12
    • (no CPE)range: 2018.4.1.0
  • IBM/API Managerllm-create
    Range: 2018.4.1.0 - 2018.4.1.12

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.