CVE-2026-3144

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
08/07/2026
Last modified:
10/07/2026

Description

IBM API Connect 12.1.0.0 through 12.1.0.3 uses default credentials which could allow an attacker to gain unauthorized access to the application before the system enforces a credential update.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:api_connect:*:*:*:*:*:*:*:* 12.1.0.0 (including) 12.1.1.0 (excluding)


References to Advisories, Solutions, and Tools