CVE-2016-3033
01.12.2016, 11:59
IBM AppScan Source 8.7 through 9.0.3.3 allows remote authenticated users to read arbitrary files or cause a denial of service (memory consumption) via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.Enginsight
| Vendor | Product | Version |
|---|---|---|
| ibm | appscan_source | 8.7 |
| ibm | appscan_source | 8.7.0.1 |
| ibm | appscan_source | 8.8 |
| ibm | appscan_source | 9.0 |
| ibm | appscan_source | 9.0.0.1 |
| ibm | appscan_source | 9.0.1 |
| ibm | appscan_source | 9.0.2 |
| ibm | appscan_source | 9.0.3 |
| ibm | appscan_source | 9.0.3.1 |
| ibm | appscan_source | 9.0.3.2 |
| ibm | appscan_source | 9.0.3.3 |
𝑥
= Vulnerable software versions