CVE-2024-25039
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Summary
IBM Engineering Requirements Management DOORS and DOORS Web Access 9.7.2.1 through 9.7.2.11, and 9.6.1.1 through 9.6.1.13 do not limit the length of a connection which could allow for a Slowloris HTTP denial of service attack to take place. This can cause the web server to become unresponsive.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| IBM | Engineering Requirements Management DOORS and DOORS Web Access | 9.7.2.1 <= 9.7.2.11 | affected |
| IBM | Engineering Requirements Management DOORS and DOORS Web Access | 9.6.1.1 <= 9.6.1.13 | affected |
Weaknesses
- CWE-400: CWE-400 Uncontrolled Resource Consumption
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.