Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
IBM InfoSphere Information Server is affected by an XML external entity injection (XXE) vulnerability
Vulnerability Description
IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H
Vulnerability Type
XML外部实体引用的不恰当限制(XXE)
Vulnerability Title
IBM InfoSphere Information Server 代码问题漏洞
Vulnerability Description
IBM InfoSphere Information Server是美国国际商业机器(IBM)公司的一套数据整合平台。该平台可用于整合各种渠道获取的数据信息。 IBM InfoSphere Information Server 11.7.0.0版本至11.7.1.6版本存在代码问题漏洞,该漏洞源于处理XML数据时存在XML外部实体注入,可能导致敏感信息泄露或内存资源消耗。
CVSS Information
N/A
Vulnerability Type
N/A