Denial of Service Vulnerability in IBM Engineering Requirements Management DOORS
CVE-2024-25039
7.5HIGH
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 30 July 2026
What is CVE-2024-25039?
The IBM Engineering Requirements Management DOORS and DOORS Web Access products are susceptible to a vulnerability that fails to restrict the duration of a connection. This oversight allows malicious actors to exploit the system through a Slowloris HTTP denial of service attack, potentially rendering the web server unresponsive and disrupting service.
Affected Version(s)
Engineering Requirements Management DOORS and DOORS Web Access 9.7.2.1 <= 9.7.2.11
Engineering Requirements Management DOORS and DOORS Web Access 9.6.1.1 <= 9.6.1.13