Required CVE Record Information
Description
The NetIQ Identity Manager Plugins before 4.6.1 contained various XML External XML Entity (XXE) handling flaws that could be used by attackers to leak information or cause denial of service attacks.
CVSS 1 Total
Score | Severity | Version | Vector String |
---|---|---|---|
5.4 | MEDIUM | 3.0 | CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L |
Credits
- Pawel.Batunek@ingservicespolska.pl
References 1 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 1 Total
- https://www.novell.com/support/kb/doc.php?id=7021173 x_transferred