VulnerabilityModified
CVE-2012-3330
The proxy server in IBM WebSphere Application Server 7.0 before 7.0.0.27, 8.0 before 8.0.0.5, and 8.5 before 8.5.0.1, and WebSphere Virtual Enterprise, allows remote attackers to cause a denial of service (daemon outage) via a crafted request.
MEDIUM 5.0EPSS 2.40%
Does this matter?
Lower severity and a low EPSS score (2.40%). Track it; it rarely justifies an emergency change on its own.
Description
The proxy server in IBM WebSphere Application Server 7.0 before 7.0.0.27, 8.0 before 8.0.0.5, and 8.5 before 8.5.0.1, and WebSphere Virtual Enterprise, allows remote attackers to cause a denial of service (daemon outage) via a crafted request.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 2.40% probability · 83th percentile
- CISA KEV
- Not listed
- Affected
- ibm/websphere application server
- Source
- psirt@us.ibm.com
References
- http://www-01.ibm.com/support/docview.wss?uid=swg1PM71319
- http://www.ibm.com/support/docview.wss?uid=swg21614265Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/78047
- http://www-01.ibm.com/support/docview.wss?uid=swg1PM71319
- http://www.ibm.com/support/docview.wss?uid=swg21614265Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/78047
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.