Vulnerabilities > CVE-2018-1844 - XXE vulnerability in IBM Filenet Content Manager 5.2.1/5.5.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
NONE Availability impact
LOW Summary
IBM FileNet Content Manager 5.2.1 and 5.5.0 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 150904.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |