4.3
CVE-2021-39016
- EPSS 0.55%
- Veröffentlicht 14.07.2022 17:15:08
- Zuletzt bearbeitet 25.03.2025 14:21:02
- Erkennungen
IBM Engineering Lifecycle Optimization - Publishing 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 does not sufficiently monitor or control transmitted network traffic volume, so that an actor can cause the software to transmit more traffic than should be allowed for that actor. IBM X-Force ID: 213722.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Engineering Lifecycle Optimization - Publishing Version 6.0.6
Ibm ≫ Engineering Lifecycle Optimization - Publishing Version 6.0.6.1
Ibm ≫ Engineering Lifecycle Optimization - Publishing Version 7.0.1
Ibm ≫ Engineering Lifecycle Optimization Publishing Version 7.0
Ibm ≫ Engineering Lifecycle Optimization Publishing Version 7.0.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.55% | 0.43 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4.3 | 2.8 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
|
| IBM | 4.3 | 2.8 | 1.4 |
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
|
https://exchange.xforce.ibmcloud.com/vulnerabilities/213722
https://www.ibm.com/support/pages/node/6603335