Lucene search

K
cvelistIbmCVELIST:CVE-2017-1103
HistoryMay 10, 2017 - 2:00 p.m.

CVE-2017-1103

2017-05-1014:00:00
ibm
www.cve.org
5

AI Score

8

Confidence

High

EPSS

0.001

Percentile

49.7%

IBM Team Concert (RTC) is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume all available memory resources. IBM X-Force ID: 120665.

CNA Affected

[
  {
    "product": "Rational Collaborative Lifecycle Management",
    "vendor": "IBM Corporation",
    "versions": [
      {
        "status": "affected",
        "version": "4.0.7, 5.0, 5.0.1, 5.0.2, 6.0, 6.0.1, 6.0.2, 6.0.3"
      }
    ]
  }
]

AI Score

8

Confidence

High

EPSS

0.001

Percentile

49.7%

Related for CVELIST:CVE-2017-1103