CVE-2014-6199

IBM Sterling B2B Integrator 5.1, 5.2.x and Sterling File Gateway 2.1, 2.2 - Denial of Service via Crafted HTTP Request

Title source: llm
STIX 2.1

Description

The HTTP Server Adapter in IBM Sterling B2B Integrator 5.1 and 5.2.x and Sterling File Gateway 2.1 and 2.2 allows remote attackers to cause a denial of service (connection-slot exhaustion) via a crafted HTTP request.

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/98650
Vendor Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21693131
Vendor Advisory vendor-advisory x_refsource_aixapar
http://www-01.ibm.com/support/docview.wss?uid=swg1IT05121
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/62082

Scores

EPSS 0.0203
EPSS Percentile 79.0%

Details

CWE
CWE-399
Status published
Products (10)
ibm/sterling_b2b_integrator 5.1
ibm/sterling_b2b_integrator 5.2
ibm/sterling_b2b_integrator 5.2.1
ibm/sterling_b2b_integrator 5.2.2
ibm/sterling_b2b_integrator 5.2.4
ibm/sterling_b2b_integrator 5.2.4.1
ibm/sterling_b2b_integrator 5.2.4.2
ibm/sterling_b2b_integrator 5.2.5.0
ibm/sterling_file_gateway 2.1
ibm/sterling_file_gateway 2.2
Published Jan 10, 2015
Tracked Since Feb 18, 2026