CVE-2013-6329
Published Dec 17, 2013
Last updated 7 years ago
Overview
- Description
- IBM Global Security Kit (aka GSKit), as used in Content Manager OnDemand 8.5 and 9.0 and other products, allows remote attackers to cause a denial of service via a crafted handshake during resumption of an SSLv2 session.
- Source
- psirt@us.ibm.com
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.8
- Impact score
- 6.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:C
Weaknesses
- nvd@nist.gov
- CWE-310
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:content_manager_ondemand_for_multiplatforms:8.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DA9FC89C-EEC7-4E7C-850F-CFAEDCDA7204" }, { "criteria": "cpe:2.3:a:ibm:content_manager_ondemand_for_multiplatforms:9.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1D42AEB2-4FF9-4F09-91A3-6362CE0ADB8F" }, { "criteria": "cpe:2.3:a:ibm:global_security_kit:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "702FE966-E80E-46E5-A363-E1F1FA42011B" }, { "criteria": "cpe:2.3:a:ibm:security_access_manager_for_web:6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6C7B987C-74AF-48B6-A55E-B99C235AA9CE" }, { "criteria": "cpe:2.3:a:ibm:security_access_manager_for_web:6.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6F38D242-529C-41EF-99AC-2C0BF9CD4C6C" }, { "criteria": "cpe:2.3:a:ibm:security_access_manager_for_web:6.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2856421F-09BD-4FB5-A590-DE4FFD4B44BB" }, { "criteria": "cpe:2.3:a:ibm:security_access_manager_for_web:7.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4133E7B3-02B3-44C8-BBD7-234E06C3EC70" } ], "operator": "OR" } ] } ]