IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.26 and IBM Integration Bus for z/OS 10.1.0.0 through 10.1.0.7 is vulnerable to SQL injection. A remote attacker could socially engineer a user into accidentally creating files they may not be aware of.
References
Configurations
History
20 Jul 2026, 15:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
02 Jul 2026, 18:21
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.ibm.com/support/pages/node/7278350 - Vendor Advisory | |
| First Time |
Ibm
Ibm app Connect Enterprise Ibm z\/os Ibm integration Bus |
|
| CPE | cpe:2.3:a:ibm:integration_bus:*:*:*:*:*:*:*:* cpe:2.3:o:ibm:z\/os:-:*:*:*:*:*:*:* cpe:2.3:a:ibm:app_connect_enterprise:*:*:*:*:*:*:*:* |
|
| CWE | CWE-89 |
30 Jun 2026, 20:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-06-30 20:17
Updated : 2026-07-20 15:16
NVD link : CVE-2026-3602
Mitre link : CVE-2026-3602
CVE.ORG link : CVE-2026-3602
JSON object : View
Products Affected
ibm
- z\/os
- app_connect_enterprise
- integration_bus
