4.3
CVE-2021-39016
- EPSS 0.15%
- Veröffentlicht 14.07.2022 17:15:08
- Zuletzt bearbeitet 25.03.2025 14:21:02
- Quelle psirt@us.ibm.com
- CVE-Watchlists
- Unerledigt
IBM Engineering Lifecycle Optimization - Publishing 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 does not sufficiently monitor or control transmitted network traffic volume, so that an actor can cause the software to transmit more traffic than should be allowed for that actor. IBM X-Force ID: 213722.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Engineering Lifecycle Optimization - Publishing Version6.0.6
Ibm ≫ Engineering Lifecycle Optimization - Publishing Version6.0.6.1
Ibm ≫ Engineering Lifecycle Optimization - Publishing Version7.0.1
Ibm ≫ Engineering Lifecycle Optimization Publishing Version7.0
Ibm ≫ Engineering Lifecycle Optimization Publishing Version7.0.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.15% | 0.355 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 2.8 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
|
| psirt@us.ibm.com | 4.3 | 2.8 | 1.4 |
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
|