Vulnerabilities > CVE-2019-4456 - XXE vulnerability in IBM Daeja Viewone
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
NONE Availability impact
LOW Summary
IBM Daeja ViewONE Professional, Standard & Virtual 5.0.5 and 5.0.6 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 163620.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 24 |