Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-87647
HistoryJul 21, 2022 - 12:00 a.m.

IBM Sterling Partner Engagement Manager Server-Side Request Forgery Vulnerability

2022-07-2100:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
ibm sterling partner engagement manager
automation management tool
server-side request forgery
vulnerability
user input validation
authenticated attacker
unauthorized requests
network enumeration
other attacks
cnvd

EPSS

0.001

Percentile

19.6%

IBM Sterling Partner Engagement Manager is an automation management tool from IBM U.S.A. A server-side request forgery vulnerability exists in IBM Sterling Partner Engagement Manager, which stems from the product’s failure to properly validate user input and could be exploited by an authenticated attacker to send unauthorized requests from the system, which could lead to network enumeration or facilitate other attacks.

EPSS

0.001

Percentile

19.6%

Related for CNVD-2022-87647