CVE-2014-4807: IBM Sterling Selling And Fulfillment Foundation
Medium severity, CVSS 4.0. EPSS: 1.2% chance of exploitation in the next 30 days.
Sterling Order Management in IBM Sterling Selling and Fulfillment Suite 9.3.0 before FP8 allows remote authenticated users to cause a denial of service (CPU consumption) via a '\0' character.
Affected products
- IBM Sterling Selling And Fulfillment Foundation: up to and including 9.3.0.7; version 9.3.0 only; version 9.3.0.1 only; version 9.3.0.2 only; version 9.3.0.3 only; version 9.3.0.4 only; …
Published 2014-11-23. Last modified 2026-06-17.