CVE-2024-25039

🟡 Monitoruj

Brak ograniczenia długości połączenia w IBM DOORS umożliwia atak typu Slowloris, powodując niedostępność serwera.

CVSS
7.5
EPSS
0.5%
Exploit
none
Vendor
ibm
Opis źródłowy (NVD)

IBM Engineering Requirements Management DOORS and DOORS Web Access 9.7.2.1 through 9.7.2.11, and 9.6.1.1 through 9.6.1.13 do not limit the length of a connection which could allow for a Slowloris HTTP denial of service attack to take place. This can cause the web server to become unresponsive.

dos Brak patcha
Źródła i daty
ŹródłoWartość
NVD – CVSS7.5
CISA KEV (aktywnie wykorzystywane)Nie
FIRST EPSS (prawdopodobieństwo exploita)0.5%
Opublikowano (NVD)2026-07-30 19:16:56 UTC
Ostatnia modyfikacja (NVD)2026-10-02 00:10:00 UTC
Referencje