Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vpj2-4h83-h98j

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

IBM Security Directory Server 6.4.0 does not properly neutralize special elements that are used in XML, allowing attackers to modify the syntax, content, or commands of the XML before it is processed by an end system. IBM X-Force ID: 165812.

IBM Security Directory Server 6.4.0 does not properly neutralize special elements that are used in XML, allowing attackers to modify the syntax, content, or commands of the XML before it is processed by an end system. IBM X-Force ID: 165812.

EPSS

Процентиль: 60%
0.00404
Низкий

7.1 High

CVSS3

Дефекты

CWE-91

Связанные уязвимости

CVSS3: 7.1
nvd
больше 6 лет назад

IBM Security Directory Server 6.4.0 does not properly neutralize special elements that are used in XML, allowing attackers to modify the syntax, content, or commands of the XML before it is processed by an end system. IBM X-Force ID: 165812.

EPSS

Процентиль: 60%
0.00404
Низкий

7.1 High

CVSS3

Дефекты

CWE-91