Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-285r-jf89-jj3c

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The IBM Stax XMLStreamWriter in the Web Services component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.25 does not properly process XML encoding, which allows remote attackers to bypass intended access restrictions and possibly modify data via "XML fuzzing attacks" sent through SOAP requests.

The IBM Stax XMLStreamWriter in the Web Services component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.25 does not properly process XML encoding, which allows remote attackers to bypass intended access restrictions and possibly modify data via "XML fuzzing attacks" sent through SOAP requests.

EPSS

Процентиль: 48%
0.00249
Низкий

Связанные уязвимости

nvd
около 16 лет назад

The IBM Stax XMLStreamWriter in the Web Services component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.25 does not properly process XML encoding, which allows remote attackers to bypass intended access restrictions and possibly modify data via "XML fuzzing attacks" sent through SOAP requests.

EPSS

Процентиль: 48%
0.00249
Низкий