Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-85421
HistoryJul 21, 2022 - 12:00 a.m.

IBM Sterling Partner Engagement Manager XML External Entity Injection Vulnerability

2022-07-2100:00:00
China National Vulnerability Database
www.cnvd.org.cn
16
ibm sterling partner engagement manager
xml external entity
injection vulnerability
remote attackers
sensitive information
memory resources

EPSS

0.001

Percentile

45.5%

IBM Sterling Partner Engagement Manager is an automation management tool from IBM, Inc. An XML external entity injection vulnerability exists in IBM Sterling Partner Engagement Manager, which stems from a network system or product that does not set the correct filtering to allow references to external entities, which could be exploited by remote attackers to expose sensitive information or consume memory resources.

EPSS

0.001

Percentile

45.5%

Related for CNVD-2022-85421