PT-2023-13362 · Ibm · Ibm Sterling Partner Engagement Manager

Published

2023-01-11

·

Updated

2023-01-18

·

CVE-2022-34335

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions IBM Sterling Partner Engagement Manager versions 6.1.2 through 6.2.1
Description The issue allows an authenticated user to exhaust server resources, which could lead to a denial of service.
Recommendations For versions 6.1.2 through 6.2.1, consider restricting access to authenticated users to minimize the risk of exploitation until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Resource Exhaustion

Weakness Enumeration

Related Identifiers

CVE-2022-34335

Affected Products

Ibm Sterling Partner Engagement Manager