IBM Sterling Partner Engagement Manager 6.1 Standard Edition

CPE Details

IBM Sterling Partner Engagement Manager 6.1 Standard Edition
6.1
2022-08-01
13h33 +00:00
2022-08-12
18h37 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.1:*:*:*:standard:*:*:*

Informations

Vendor

ibm

Product

sterling_partner_engagement_manager

Version

6.1

Software Edition

standard

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2022-34334 2022-10-10 20h43 +00:00 IBM Sterling Partner Engagement Manager 2.0 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 229704.
6.5
Medium
CVE-2022-34348 2022-09-23 17h35 +00:00 IBM Sterling Partner Engagement Manager 6.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 230017.
7.1
High
CVE-2022-35639 2022-07-26 14h25 +00:00 IBM Sterling Partner Engagement Manager 6.1, 6.2, and Cloud 22.2 do not limit the length of a connection which could cause the server to become unresponsive. IBM X-Force ID: 230932.
7.5
High