CVE-2024-39726

CVSS V2 None CVSS V3 None
Description
IBM Engineering Lifecycle Optimization - Engineering Insights 7.0.2 and 7.0.3 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources.
Overview
  • CVE ID
  • CVE-2024-39726
  • Assigner
  • ibm
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-11-15T16:13:12.535Z
  • Last Modified Date
  • 2024-11-15T17:15:35.473Z
References
Reference URL Reference Tags
https://www.ibm.com/support/pages/node/7176208 vendor-advisory
History
Created Old Value New Value Data Type Notes
2024-11-16 13:54:10 Added to TrackCVE