VYPR
High severity8.1NVD Advisory· Published Jul 8, 2026· Updated Jul 10, 2026

CVE-2026-3144

CVE-2026-3144

Description

IBM API Connect 12.1.0.0 through 12.1.0.3 uses default credentials which could allow an attacker to gain unauthorized access to the application before the system enforces a credential update.

Affected products

2
  • IBM/API Connect2 versions
    cpe:2.3:a:ibm:api_connect:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:ibm:api_connect:*:*:*:*:*:*:*:*range: >=12.1.0.0,<12.1.1.0
    • (no CPE)range: 12.1.0.0 - 12.1.0.3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.