Lucene search

K
nvd[email protected]NVD:CVE-2022-35639
HistoryJul 26, 2022 - 3:15 p.m.

CVE-2022-35639

2022-07-2615:15:10
web.nvd.nist.gov
6
ibm
sterling partner engagement manager
server unresponsive

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

35.4%

IBM Sterling Partner Engagement Manager 6.1, 6.2, and Cloud 22.2 do not limit the length of a connection which could cause the server to become unresponsive. IBM X-Force ID: 230932.

Affected configurations

Nvd
Node
ibmsterling_partner_engagement_managerRange6.16.1.2.5standard
OR
ibmsterling_partner_engagement_managerRange6.26.2.0.3standard
OR
ibmsterling_partner_engagement_manager_on_cloudMatch22.2
AND
linuxlinux_kernelMatch-
VendorProductVersionCPE
ibmsterling_partner_engagement_manager*cpe:2.3:a:ibm:sterling_partner_engagement_manager:*:*:*:*:standard:*:*:*
ibmsterling_partner_engagement_manager_on_cloud22.2cpe:2.3:a:ibm:sterling_partner_engagement_manager_on_cloud:22.2:*:*:*:*:*:*:*
linuxlinux_kernel-cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

35.4%

Related for NVD:CVE-2022-35639