VDB

CVE-2024-22329

CVE-2024-22329 PUBLISHED

Es existiert eine Schwachstelle in IBM WebSphere Application Server. Der Fehler besteht aufgrund einer serverseitigen Request Forgery. Ein Angreifer aus dem angrenzenden Netzwerk kann diese Schwachstelle ausnutzen, um Sicherheitsmaßnahmen zu umgehen.

EPSS 0.03% · 9.4th percentile

Risk Scores

EPSS Score
0.03%
9.4th percentile

Affected Products

VendorProductVersions
IBMIBM InfoSphere Information Server 11.7
HCLHCL AppScan Enterprise <10.7.0
HCLHCL BigFix Compliance
IBMIBM Maximo Asset Management 7.6.8
IBMIBM InfoSphere Identity Insight 9.0.0.1
HCLHCL BigFix Compliance <2.0.12
IBMIBM Storage Scale <5.2.1.0
IBMIBM TXSeries for Multiplatforms 9.1
IBMIBM MQ 9.3.0
IBMIBM Rational ClearQuest
HCLHCL Commerce 9.0-9.0.1.21
IBMIBM WebSphere Application Server Liberty <=24.0.0.3
IBMIBM WebSphere Service Registry and Repository 8.5
IBMIBM Maximo Asset Management 7.6.7
IBMIBM Rational ClearCase 9.1
HCLHCL Commerce 8.x
IBMIBM Rational ClearCase 10.0.0
IBMIBM TXSeries for Multiplatforms 8.1
IBMIBM Storage Scale <5.1.9.5
IBMIBM Rational ClearCase

…and 17 more

Exploit Intelligence

Timeline

  • Feb 8, 2024 PoC Published
  • Apr 16, 2024 CVE Published
  • Apr 17, 2024 EPSS Score
  • May 12, 2024 EPSS Score
  • Jun 7, 2024 EPSS Score
  • Jul 2, 2024 EPSS Score
  • Jul 26, 2024 EPSS Score
  • Aug 20, 2024 EPSS Score
  • Sep 14, 2024 EPSS Score
  • Oct 4, 2024 Coalition ESS Score
  • Oct 9, 2024 EPSS Score
  • Oct 24, 2024 Coalition ESS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›