Vulnerability index

Browse CVEs

127 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness XML External Entity (XXE)CWE-611 × clear
CRITICAL 9.1 CVE-2014-0931 Multiple XML external entity (XXE) vulnerabilities in the (1) CCRC WAN Server / CM Server, (2) Perl CC/CQ integration trigger scripts, (3) CMAPI Java… Rational Clearcase after 8.0.1.3 Fix from $2,3002018-04-20 HIGH 7.1 CVE-2014-0950 Multiple XML external entity (XXE) vulnerabilities in (1) CQWeb / CM Server, (2) ClearQuest Native client, (3) ClearQuest Eclipse client, and (4) Cle… Rational Clearquest after 8.0.1.3 Fix from $1,9502018-04-20 HIGH 7.1 CVE-2018-1421 IBM WebSphere DataPower Appliances 7.1, 7.2, 7.5, 7.5.1, 7.5.2, and 7.6 is vulnerable to a XML External Entity Injection (XXE) attack when processing… Datapower Gateway after 7.6.0.5 Fix from $1,9502018-04-04 MEDIUM 6.5 CVE-2015-7461 XML external entity (XXE) vulnerability in IBM Connections 3.0.1.1 and earlier, 4.0, 4.5, and 5.0 before CR4 allows remote authenticated users to cau… Connections after 3.0.1.1 Fix from $1,6002018-03-20 MEDIUM 5.4 CVE-2016-0250 XML external entity (XXE) vulnerability in IBM InfoSphere Information Governance Catalog 11.3 before 11.3.1.2 and 11.5 before 11.5.0.1 allows remote … Infosphere Information Server 11.3.1.2+ Fix from $1,6002018-03-12 HIGH 7.1 CVE-2017-1758 IBM Financial Transaction Manager for ACH Services for Multi-Platform (IBM Control Center 6.0 and 6.1, IBM Financial Transaction Manager 3.0.2, 3.0.3… Financial Transaction Manager Patch available Fix from $1,9502018-02-21 HIGH 8.2 CVE-2018-1364 IBM Content Navigator 2.0 and 3.0 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exp… Content Navigator Mitigation only Fix from $1,9502018-01-29 MEDIUM 6.5 CVE-2016-0219 XML external entity (XXE) vulnerability in IBM Rational Team Concert 3.0 before 3.0.1.6 iFix7 Interim Fix 1, 4.0 before 4.0.7 iFix10, 5.0 before 5.0.… Rational Quality Manager Mitigation only Fix from $1,6002018-01-16 HIGH 8.1 CVE-2017-1666 IBM Tivoli Key Lifecycle Manager 2.5, 2.6, and 2.7 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote a… Security Key Lifecycle Manager Patch available Fix from $1,9502018-01-09 HIGH 8.1 CVE-2017-1477 IBM Security Access Manager Appliance 9.0.3 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker… Security Access Manager 9.0 Firmware Mitigation only Fix from $1,9502017-11-13 HIGH 8.1 CVE-2017-1527 IBM Business Process Manager 7.5, 8.0, and 8.5 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attac… Business Process Manager Patch available Fix from $1,9502017-09-26 HIGH 8.1 CVE-2017-1458 IBM QRadar Network Security 5.4 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could explo… Qradar Network Security Mitigation only Fix from $1,9502017-09-05 HIGH 8.2 CVE-2017-1192 IBM Sterling B2B Integrator 5.2 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could expl… Sterling B2b Integrator Mitigation only Fix from $1,9502017-08-10 MEDIUM 6.5 CVE-2015-0194 XML External Entity (XXE) vulnerability in IBM Sterling B2B Integrator 5.1 and 5.2 and IBM Sterling File Gateway 2.1 and 2.2 allows remote attackers … Sterling B2b Integrator Patch available Fix from $1,6002017-08-02 CRITICAL 9.1 CVE-2017-1383 IBM InfoSphere Information Server 9.1, 11.3, and 11.5 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remot… Infosphere Information Server Mitigation only Fix from $2,3002017-08-02 MEDIUM 6.5 CVE-2017-1219 IBM Tivoli Endpoint Manager is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit t… Bigfix Platform Mitigation only Fix from $1,6002017-07-19 HIGH 7.1 CVE-2017-1254 IBM Security Guardium 10.0 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit th… Security Guardium Mitigation only Fix from $1,9502017-07-05 HIGH 8.2 CVE-2017-1322 IBM API Connect 5.0.6.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this… Api Connect Patch available Fix from $1,9502017-06-27 HIGH 8.1 CVE-2016-9698 IBM Rhapsody DM 4.0, 5.0, and 6.0 is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML da… Rational Rhapsody Design Manager Patch available Fix from $1,9502017-06-08 MEDIUM 6.5 CVE-2016-0254 IBM Cognos Business Intelligence 10.1 and 10.2 is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when proc… Cognos Business Intelligence Patch available Fix from $1,6002017-06-07 HIGH 8.2 CVE-2017-1289 IBM SDK, Java Technology Edition is vulnerable XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit th… Sdk after 8 Fix from $1,9502017-05-22 HIGH 8.1 CVE-2017-1103 IBM Team Concert (RTC) is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remot… Rational Team Concert Patch available Fix from $1,9502017-05-10 HIGH 8.6 CVE-2016-9691 IBM WebSphere Cast Iron Solution 7.0.0 and 7.5.0.0 is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when … Websphere Cast Iron Solution Patch available Fix from $1,9502017-05-05 HIGH 8.1 CVE-2017-1149 IBM UrbanCode Deploy (UCD) 6.0, 6.1, and 6.2 is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when proces… Urbancode Deploy Mitigation only Fix from $1,9502017-04-25 CRITICAL 9.1 CVE-2016-6111 IBM Curam Social Program Management 6.0 and 7.0 are vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when pr… Curam Social Program Management Patch available Fix from $2,3002017-03-31 HIGH 8.1 CVE-2016-9707 IBM Jazz Foundation is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote a… Rational Rhapsody Design Manager Patch available Fix from $1,9502017-03-31 HIGH 8.1 CVE-2016-9724 IBM QRadar 7.2 is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attack… Qradar Security Information And Event Manager Patch available Fix from $1,9502017-03-07 HIGH 8.1 CVE-2016-8974 IBM Rhapsody DM 4.0, 5.0 and 6.0 is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML dat… Rational Rhapsody Design Manager Patch available Fix from $1,9502017-02-23 CRITICAL 9.1 CVE-2016-9706 IBM Integration Bus 9.0 and 10.0 and WebSphere Message Broker SOAP FLOWS is vulnerable to a denial of service, caused by an XML External Entity Injec… Integration Bus Patch available Fix from $2,3002017-02-15 HIGH 8.1 CVE-2016-8980 IBM BigFix Inventory v9 is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remo… License Metric Tool Mitigation only Fix from $1,9502017-02-01