Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IBM Tivoli Endpoint Manager 9.1 before 9.1.1088.0 allows remote attackers to read arbitrary files via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM Tivoli Endpoint Manager 信息泄露漏洞
Vulnerability Description
IBM Tivoli Endpoint Manager是美国IBM公司的一套终端控制软件。该软件可帮助用户查看和更新系统,向所有端点部署和管理补丁,并可通过持续管理修复问题。 IBM Tivoli Endpoint Manager 9.1版本中存在安全漏洞,该漏洞源于程序处理XML数据存在XML外部实体注入错误。远程攻击者可通过发送特制的XML数据利用该漏洞读取任意文件,获取服务器上的敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A