Denial of Service Vulnerability in IBM App Connect Enterprise
CVE-2024-31904

6.5MEDIUM

Key Information:

Vendor
IBM
Vendor
CVE Published:
22 May 2024

Summary

A vulnerability in IBM App Connect Enterprise allows an authenticated user to trigger a denial of service condition through an uncaught exception. This issue affects integration nodes in versions 11.0.0.1 to 11.0.0.25 and 12.0.1.0 to 12.0.12.0, potentially disrupting service availability. For further details, refer to IBM's support page and the IBM X-Force Exchange.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

.