CVE-2015-1943

IBM WebSphere Portal DoS via Crafted Request

Title source: llm
STIX 2.1

Description

IBM WebSphere Portal 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.0.x through 7.0.0.2 CF29, 8.0.x before 8.0.0.1 CF17, and 8.5.0 before CF06 allows remote attackers to cause a denial of service (CPU and memory consumption) via a crafted request.

References (3)

Core 3
Core References
Various Sources vendor-advisory x_refsource_aixapar
http://www-01.ibm.com/support/docview.wss?uid=swg1PI39617
Patch, Vendor Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21962567
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1033444

Scores

EPSS 0.0274
EPSS Percentile 84.6%

Details

CWE
CWE-399
Status published
Products (17)
ibm/websphere_portal 6.1.0.0
ibm/websphere_portal 6.1.0.1
ibm/websphere_portal 6.1.0.2
ibm/websphere_portal 6.1.0.3
ibm/websphere_portal 6.1.0.4
ibm/websphere_portal 6.1.0.5
ibm/websphere_portal 6.1.0.6
ibm/websphere_portal 6.1.5.0
ibm/websphere_portal 6.1.5.1
ibm/websphere_portal 6.1.5.2
... and 7 more
Published Sep 14, 2015
Tracked Since Feb 18, 2026