Vulnerabilities > IBM > Infosphere Information Server Metadata Workbench

DATE CVE VULNERABILITY TITLE RISK
2019-06-17 CVE-2018-1845 XXE vulnerability in IBM products
IBM InfoSphere Information Server 11.3, 11.5, and 11.7 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data.
network
low complexity
ibm CWE-611
7.1
2014-05-16 CVE-2014-0933 Cross-Site Request Forgery (CSRF) vulnerability in IBM Infosphere Information Server Metadata Workbench
Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere Information Server Metadata Workbench 8.1 through 9.1 allows remote attackers to hijack the authentication of arbitrary users.
network
ibm CWE-352
6.8