Vulnerability index

Browse CVEs

127 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness XML External Entity (XXE)CWE-611 × clear
CRITICAL 9.1 CVE-2022-40747 "IBM InfoSphere Information Server 11.7 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker co… Infosphere Information Server Patch available Fix from $2,3002022-11-03 HIGH 7.1 CVE-2022-34348 IBM Sterling Partner Engagement Manager 6.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacke… Sterling Partner Engagement Manager 6.1.2.6 / 6.2.0.4+ Fix from $1,9502022-09-23 HIGH 8.1 CVE-2022-36773 IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote att… Cognos Analytics 11.1.7 / 11.2.3+ Fix from $1,9502022-09-01 CRITICAL 9.1 CVE-2022-22489 IBM MQ 8.0, (9.0, 9.1, 9.2 LTS), and (9.1 and 9.2 CD) are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A rem… Mq Patch available Fix from $2,3002022-08-19 CRITICAL 9.1 CVE-2022-31775 IBM DataPower Gateway 10.0.2.0 through 10.0.4.0, 10.0.1.0 through 10.0.1.8, 10.5.0.0, and 2018.4.1.0 through 2018.4.1.21 is vulnerable to an XML Exte… Datapower Gateway 10.0.1.8 / 10.5.0.1+ Fix from $2,3002022-08-01 HIGH 7.1 CVE-2022-22358 IBM Sterling Partner Engagement Manager 6.1.2, 6.2, and Cloud/SasS 22.2 is vulnerable to an XML External Entity Injection (XXE) attack when processin… Partner Engagement Manager 6.1.2.5 / 6.2.0.3+ Fix from $1,9502022-07-19 HIGH 8.2 CVE-2020-4875 IBM Cognos Controller 10.4.0, 10.4.1, and 10.4.2 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote at… Cognos Controller Mitigation only Fix from $1,9502022-01-21 HIGH 8.2 CVE-2020-4876 IBM Cognos Controller 10.4.0, 10.4.1, and 10.4.2 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote at… Cognos Controller Mitigation only Fix from $1,9502022-01-21 HIGH 8.1 CVE-2021-29831 IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to an XML External Entity Injection (XXE) attack when proce… Jazz For Service Management Patch available Fix from $1,9502021-09-21 CRITICAL 9.1 CVE-2021-20399 IBM Qradar SIEM 7.3.0 to 7.3.3 Patch 8 and 7.4.0 to 7.4.3 GA is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data.… Qradar Security Information And Event Manager 7.3.3 / 7.4.3+ Fix from $2,3002021-07-27 CRITICAL 9.1 CVE-2020-5003 IBM Financial Transaction Manager 3.2.4 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker co… Financial Transaction Manager Mitigation only Fix from $2,3002021-06-11 HIGH 8.2 CVE-2020-4300 IBM Cognos Analytics 11.0 and 11.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could e… Cognos Analytics Patch available Fix from $1,9502021-06-01 HIGH 7.1 CVE-2019-4730 IBM Cognos Analytics 11.0 and 11.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could e… Cognos Analytics Patch available Fix from $1,9502021-06-01 HIGH 8.2 CVE-2021-20492 IBM WebSphere Application Server 8.0, 8.5, 9.0, and Liberty Java Batch is vulnerable to an XML External Entity Injection (XXE) attack when processing… Websphere Application Server after 21.0.0.5 Fix from $1,9502021-05-26 HIGH 8.1 CVE-2020-5013 IBM QRadar SIEM 7.3 and 7.4 may vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit … Qradar Security Information And Event Manager 7.3.3 / 7.4.2+ Fix from $1,9502021-05-05 HIGH 8.2 CVE-2021-20454 IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A rem… Websphere Application Server after 9.0.5.7 Fix from $1,9502021-04-21 HIGH 8.2 CVE-2021-20453 IBM WebSphere Application Server 8.0, 8.5, and 9.0 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote a… Websphere Application Server 8.0.0.15 / 8.5.5.20+ Fix from $1,9502021-04-20 HIGH 7.1 CVE-2021-20502 IBM Jazz Foundation Products are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploi… Engineering Insights Patch available Fix from $1,9502021-03-30 HIGH 7.1 CVE-2021-20482 IBM Cloud Pak for Automation 20.0.2 and 20.0.3 IF002 are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remo… Cloud Pak For Automation Mitigation only Fix from $1,9502021-03-30 HIGH 8.2 CVE-2021-20353EPSS 5% IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A re… Websphere Application Server 7.0.0.45 / 8.0.0.15+ Fix from $1,9502021-02-10 HIGH 8.2 CVE-2020-4949 IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A re… Websphere Application Server after 9.0.5.6 Fix from $1,9502021-01-26 HIGH 8.1 CVE-2020-4772 An XML External Entity Injection (XXE) vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10. A remote attacker could exploit… Curam Social Program Management Mitigation only Fix from $1,9502020-10-12 HIGH 7.5 CVE-2020-4643 IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A re… Websphere Application Server after 9.0.5.5 Fix from $1,9502020-09-21 HIGH 8.2 CVE-2020-4481 IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 7.0.3.0, and 7.0.4.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML … Urbancode Deploy Mitigation only Fix from $1,9502020-08-05 CRITICAL 9.1 CVE-2020-4377 IBM Cognos Anaytics 11.0 and 11.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could ex… Cognos Analytics Mitigation only Fix from $2,3002020-08-03 HIGH 8.2 CVE-2020-4463EPSS 32% IBM Maximo Asset Management 7.6.0.1 and 7.6.0.2 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote att… Maximo Asset Management Patch available Fix from $1,9502020-07-29 HIGH 8.2 CVE-2020-4462 IBM Sterling External Authentication Server 6.0.1, 6.0.0, 2.4.3.2, and 2.4.2 and IBM Sterling Secure Proxy 6.0.1, 6.0.0, 3.4.3, and 3.4.2 are vulnera… Sterling External Authentication Server Mitigation only Fix from $1,9502020-07-16 MEDIUM 5.5 CVE-2020-4510 IBM QRadar SIEM 7.3 and 7.4 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit … Qradar Security Information And Event Manager after 7.3.2 Fix from $1,6002020-07-14 HIGH 7.6 CVE-2020-4509 IBM QRadar SIEM 7.3 and 7.4 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit … Qradar Security Information And Event Manager Mitigation only Fix from $1,9502020-06-04 HIGH 7.1 CVE-2020-4246 IBM Security Identity Governance and Intelligence 5.2.6 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A re… Security Identity Governance And Intelligence Patch available Fix from $1,9502020-05-28