Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-1612

Опубликовано: 29 апр. 2010
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

The IBM WebSphere DataPower XML Accelerator XA35, Low Latency Appliance XM70, Integration Appliance XI50, B2B Appliance XB60, and XML Security Gateway XS40 SOA Appliances before 3.8.0.0, when a QLOGIC Ethernet interface is used, allow remote attackers to cause a denial of service (interface outage) via malformed ICMP packets to the 0.0.0.0 destination IP address.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:*:*:*:*:*:*:*:*
Версия до 3.7.3.10 (включая)
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.2:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.2:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.3:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.4:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.5:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.6:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.7:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.8:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.7.3.9:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.8.0.0:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.8.0.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.8.0.2:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.8.0.3:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_accelerator_xa35:3.8.0.4:*:*:*:*:*:*:*
cpe:2.3:h:qlogic:ethernet:*:*:*:*:*:*:*:*
Конфигурация 2

Одновременно

Одно из

cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:*:*:*:*:*:*:*:*
Версия до 3.7.3.10 (включая)
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.2:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.2:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.3:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.4:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.5:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.6:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.7:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.8:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.7.3.9:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.8.0.0:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.8.0.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.8.0.2:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.8.0.3:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_xml_security_gateway_xs40:3.8.0.4:*:*:*:*:*:*:*
cpe:2.3:h:qlogic:ethernet:*:*:*:*:*:*:*:*
Конфигурация 3

Одновременно

Одно из

cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:*:*:*:*:*:*:*:*
Версия до 3.7.3.10 (включая)
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.2:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.2:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.3:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.4:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.5:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.6:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.7:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.8:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.7.3.9:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.8.0.0:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.8.0.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.8.0.2:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.8.0.4:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_datapower_integration_appliance_xi50:3.8.03:*:*:*:*:*:*:*
cpe:2.3:h:qlogic:ethernet:*:*:*:*:*:*:*:*
Конфигурация 4

Одновременно

Одно из

cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:*:*:*:*:*:*:*:*
Версия до 3.7.3.10 (включая)
cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.2:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.3:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.4:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.5:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.6:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.7:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.8:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.7.3.9:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.8.0.0:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.8.0.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.8.0.2:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.8.0.3:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_b2b_appliance_xb60:3.8.0.4:*:*:*:*:*:*:*
cpe:2.3:h:qlogic:ethernet:*:*:*:*:*:*:*:*
Конфигурация 5

Одновременно

Одно из

cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:*:*:*:*:*:*:*:*
Версия до 3.7.3.10 (включая)
cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.2:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.3:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.4:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.5:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.6:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.7:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.8:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.7.3.9:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.8.0.0:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.8.0.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.8.0.2:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.8.0.3:*:*:*:*:*:*:*
cpe:2.3:h:ibm:websphere_datapower_low_latency_appliance_xm70:3.8.0.4:*:*:*:*:*:*:*
cpe:2.3:h:qlogic:ethernet:*:*:*:*:*:*:*:*

EPSS

Процентиль: 79%
0.01309
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
больше 3 лет назад

The IBM WebSphere DataPower XML Accelerator XA35, Low Latency Appliance XM70, Integration Appliance XI50, B2B Appliance XB60, and XML Security Gateway XS40 SOA Appliances before 3.8.0.0, when a QLOGIC Ethernet interface is used, allow remote attackers to cause a denial of service (interface outage) via malformed ICMP packets to the 0.0.0.0 destination IP address.

EPSS

Процентиль: 79%
0.01309
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other