CVE-2023-27556

MEDIUM

IBM Counter Fraud Management for Safer Payments DoS

Title source: llm
STIX 2.1

Description

IBM Counter Fraud Management for Safer Payments 6.1.0.00, 6.2.0.00, 6.3.0.00 through 6.3.1.03, 6.4.0.00 through 6.4.2.02 and 6.5.0.00 does not properly allocate resources without limits or throttling which could allow a remote attacker to cause a denial of service. IBM X-Force ID: 249190.

References (2)

Core 2
Core References
Various Sources vendor-advisory
https://www.ibm.com/support/pages/node/6985601

Scores

CVSS v3 6.5
EPSS 0.0041
EPSS Percentile 61.3%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-770
Status published
Products (2)
ibm/safer_payments 6.5.0.00
ibm/safer_payments 6.1.0.00 - 6.3.1.04
Published Apr 28, 2023
Tracked Since Feb 18, 2026