Vulnerabilities > IBM > Security Directory Server > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-10-14 CVE-2022-32755 XXE vulnerability in IBM products
IBM Security Directory Server 6.4.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data.
network
low complexity
ibm CWE-611
critical
9.1
2023-09-08 CVE-2022-33164 Path Traversal vulnerability in IBM Security Directory Server 7.2.0
IBM Security Directory Server 7.2.0 could allow a remote attacker to traverse directories on the system.
network
low complexity
ibm CWE-22
critical
9.1