IBM Sterling Secure Proxy 6.0.3.0, 6.0.2.0, and 3.4.3.2 and IBM Sterling External Authentication Server are vulnerable a buffer overflow, due to the Jetty based GUI in the Secure Zone not properly validating the sizes of the form content and/or HTTP headers submitted. A local attacker positioned inside the Secure Zone could submit a specially crafted HTTP request to disrupt service. IBM X-Force ID: 219133.
CVSS
No CVSS.
References
Configurations
No configuration.
Information
Published : 2022-02-23 20:15
Updated : 2022-02-24 15:15
NVD link : CVE-2022-22333
Mitre link : CVE-2022-22333
JSON object : View
Products Affected
No product.
CWE
No CWE.
