ibm-2024-psr-001

MEDIUM CVSS 5.3 csaf_ibm
Description

IBM WebSphere is vulnerable to XML External Entity Injection allowing information disclosure.

Timeline
Published
2024-04-02 12:00 UTC
Last Modified
2024-04-10
CVSS Details

CVSS details not available.

Affected Products

No product information available.

CVSS metrics
Version Base Severity Vector Exploitability Impact Source
3.1 5.3 MEDIUM
References

No references available.

Linked Vulnerabilities

No linked vulnerabilities found.

{
  "cvss": 5.3,
  "datePublished": "2024-04-02T12:00:00Z",
  "dateUpdated": "2024-04-10T18:00:00Z",
  "description": "IBM WebSphere is vulnerable to XML External Entity Injection allowing information disclosure.",
  "id": "IBM-2024-PSR-001",
  "metrics": {
    "cvssMetricV31": [
      {
        "cvssData": {
          "baseScore": 5.3,
          "baseSeverity": "MEDIUM",
          "version": "3.1"
        }
      }
    ]
  },
  "severity": "MEDIUM",
  "source": "csaf_ibm",
  "title": "IBM: WebSphere Application Server XXE"
}
View JSON API Download JSON