An XML External Entity Injection (XXE) vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10. A remote attacker could exploit this vulnerability to expose sensitive information, denial of service, server side request forgery or consume memory resources. IBM X-Force ID: 189150.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2020-10-12T13:05:36.161604Z
Updated: 2024-09-16T16:58:38.130Z
Reserved: 2019-12-30T00:00:00
Link: CVE-2020-4772
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-10-12T13:15:12.633
Modified: 2024-11-21T05:33:13.780
Link: CVE-2020-4772
Redhat
No data.