CVE-2021-22498
19.01.2021, 16:15
XML External Entity Injection vulnerability in Micro Focus Application Lifecycle Management (Previously known as Quality Center) product. The vulnerability affects versions 12.x, 12.60 Patch 5 and earlier, 15.0.1 Patch 2 and earlier and 15.5. The vulnerability could be exploited to allow an XML External Entity Injection.Enginsight
Vendor | Product | Version |
---|---|---|
microfocus | application_lifecycle_management | 12.50 ≤ 𝑥 ≤ 12.60 |
microfocus | application_lifecycle_management | 15.0.0 ≤ 𝑥 ≤ 15.0.1 |
microfocus | application_lifecycle_management | 12.60:patch1 |
microfocus | application_lifecycle_management | 12.60:patch2 |
microfocus | application_lifecycle_management | 12.60:patch3 |
microfocus | application_lifecycle_management | 12.60:patch4 |
microfocus | application_lifecycle_management | 12.60:patch5 |
microfocus | application_lifecycle_management | 15.0.1:patch1 |
microfocus | application_lifecycle_management | 15.0.1:patch2 |
microfocus | application_lifecycle_management | 15.5 |
𝑥
= Vulnerable software versions