cbcvebase.
CVE-2016-0250
published 2018-03-12

CVE-2016-0250: XML external entity (XXE) vulnerability in IBM InfoSphere Information Governance Catalog 11.3 before 11.3.1.2 and 11.5 before 11.5.0.1 allows remote…

medium5.4CVSS 3.0
AVNACLPRLUINSUCLINAL
XML external entity (XXE) vulnerability in IBM InfoSphere Information Governance Catalog 11.3 before 11.3.1.2 and 11.5 before 11.5.0.1 allows remote authenticated users to read arbitrary files or cause a denial of service via crafted XML data. IBM X-Force ID: 110510.

Affected

2 ranges
VendorProductVersion rangeFixed in
ibminfosphere_information_server
ibminfosphere_information_server>= 11.3 < 11.3.1.211.3.1.2