<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Cpe:2.3:o:ibm:hardware_management_console_r10.0_firmware:10.0.245.0:*:*:*:*:*:*:* - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/cpes/cpe2.3oibmhardware_management_console_r10.0_firmware10.0.245.0/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Mon, 28 Sep 2026 16:15:23 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/cpes/cpe2.3oibmhardware_management_console_r10.0_firmware10.0.245.0/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Multiple Vulnerabilities in IBM App Connect Enterprise</title><link>https://feed.craftedsignal.io/briefs/2026-09-ibm-app-connect-vulnerabilities/</link><pubDate>Mon, 28 Sep 2026 16:15:23 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-ibm-app-connect-vulnerabilities/</guid><description>IBM App Connect Enterprise is affected by multiple vulnerabilities, including CVE-2024-45090 through CVE-2024-45094, which enable security bypass, denial-of-service, information disclosure, file manipulation, and cross-site scripting.</description><content:encoded>&lt;p>IBM has released a security advisory regarding multiple vulnerabilities affecting IBM App Connect Enterprise. The identified vulnerabilities, tracked as CVE-2024-45090, CVE-2024-45091, CVE-2024-45092, CVE-2024-45093, and CVE-2024-45094, allow unauthenticated or authenticated attackers to compromise the integrity and availability of the application.&lt;/p>
&lt;p>These flaws permit a wide range of malicious activities, including the bypassing of existing security controls, triggering denial-of-service (DoS) conditions that disrupt service availability, unauthorized information disclosure of sensitive data, arbitrary file manipulation, and the execution of cross-site scripting (XSS) attacks. Defenders should prioritize auditing instances of IBM App Connect Enterprise for these specific CVEs and ensure that security patches are applied to mitigate the risk of unauthorized access or service disruption.&lt;/p>
</content:encoded><category domain="severity">high</category><category domain="type">advisory</category><category>vulnerability</category><category>enterprise-software</category></item></channel></rss>