Denial of Service Vulnerability in IBM Curam Social Program Management Web Services
CVE-2014-6092

Currently unrated

Key Information:

Vendor

IBM

Vendor
CVE Published:
27 April 2015

What is CVE-2014-6092?

This vulnerability arises from improper handling of failed login attempts for web-service accounts in IBM Curam Social Program Management. Unlike standard user accounts, web-service accounts do not share the same lockout policy, allowing remote attackers to exploit valid caseworker account names to execute numerous login attempts. This may lead to a denial-of-service condition, potentially resulting in a web-service outage and interrupting critical operational services.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.