IBM Global Security Kit (aka GSKit), as used in Content Manager OnDemand 8.5 and 9.0 and other products, allows remote attackers to cause a denial of service via a crafted handshake during resumption of an SSLv2 session.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Ibm Http_server | — | Apply IBM HTTP Server version 6.1.0.48 or laterApply IBM HTTP Server version 8.0.0.9 or laterApply IBM HTTP Server version 8.5.5.2 or laterApply IBM HTTP Server Interim Fix PI05309Apply IBM HTTP Server version 7.0.0.33 or later | Sep 7, 2022 | Sep 7, 2022 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub