IBM DataPower Gateway是美国IBM公司的一套专门为移动、云、应用编程接口(API)、网络、面向服务架构(SOA)、B2B和云工作负载而设计的安全和集成平台。该平台可利用专用网关平台跨渠道保护、集成和优化访问。 IBM DataPower Gateway 存在安全漏洞,该漏洞允许具有管理特权的本地攻击者使用服务器端请求伪造攻击在系统上执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | DataPower Gateway | 2018.4.1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | A POC for IBM Datapower Authenticated Redis RCE Exploit abusing the Test Message Function (CVE-2020-5014) | https://github.com/copethomas/datapower-redis-rce-exploit | POC Details |
No public POC found.
Login to generate AI POC| CVE-2020-4695 | IBM API Connect 安全漏洞 | |
| CVE-2020-4903 | IBM API Connect 安全漏洞 |
No comments yet