CVE-2024-52362: IBM App Connect Enterprise Certified Container denial of service
IBM App Connect Enterprise Certified Container 7.2, 8.0, 8.1, 8.2, 9.0, 9.1, 9.2, 10.0, 10.1, 11.0, 11.1, 11.2, 11.3, 11.4, 11.5, 11.6, 12.0, 12.1, 12.2, 12.3, 12.4, 12.5, 12.6, 12.7, and 12.8 could allow an authenticated user to cause a denial of service in the App Connect flow due to improper validation of server-side input.
Other sources
IBM App Connect Enterprise Certified Container could allow an authenticated user to cause a denial of service in the App Connect flow due to improper validation of server-side input.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-52362?
CVE-2024-52362 has a medium severity level as it allows an authenticated user to cause a denial of service in the App Connect flow.
How do I fix CVE-2024-52362?
To fix CVE-2024-52362, ensure that you upgrade to the latest version of IBM App Connect Enterprise Certified Container that addresses this vulnerability.
Which versions are affected by CVE-2024-52362?
CVE-2024-52362 affects IBM App Connect Enterprise Certified Container versions from 7.2 to 12.8, along with some specified versions of App Connect Operator and ContainersOperands.
Can CVE-2024-52362 be exploited remotely?
CVE-2024-52362 requires authenticated access, meaning it cannot be exploited remotely without valid user credentials.
What impact does CVE-2024-52362 have on my application?
CVE-2024-52362 can lead to a denial of service, impacting the availability and performance of applications using IBM App Connect Enterprise.