First published: Thu Jul 11 2019(Updated: )
Intersystems Cache 2017.2.2.865.0 allows XXE.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
InterSystems Cache | =2017.2.2.865.0 | |
InterSystems Cache | =2018.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-17152 is medium, with a CVSS score of 6.4.
CVE-2018-17152 refers to a vulnerability in InterSystems Cache 2017.2.2.865.0 that allows XXE (XML External Entity) attacks.
CVE-2018-17152 affects InterSystems Cache versions 2017.2.2.865.0 and 2018.1.2 by allowing XXE (XML External Entity) attacks.
Yes, a fix is available for CVE-2018-17152. It is recommended to update to a patched version of InterSystems Cache.
You can find more information about CVE-2018-17152 at the following reference: [Link](https://know.bishopfox.com/advisories/intersystems-cache-2017-2-2-865-0-vulnerabilities)