CVE-2019-4433
20.08.2019, 19:15
IBM InfoSphere Global Name Management 5.0 and 6.0 and IBM InfoSphere Identity Insight 8.1 and 9.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 162890.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | infosphere_global_name_management | 5.0 |
ibm | infosphere_global_name_management | 6.0 |
ibm | infosphere_identity_insight | 8.1 |
ibm | infosphere_identity_insight | 9.0 |
𝑥
= Vulnerable software versions
References