CVE-2018-1727: XEE
IBM InfoSphere Information Server 9.1, 11.3, 11.5, and 11.7 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 147630.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-1727?
CVE-2018-1727 has a medium severity level due to its potential to expose sensitive information.
How do I fix CVE-2018-1727?
To fix CVE-2018-1727, it is recommended to apply the security patches provided by IBM for the affected versions of InfoSphere Information Server.
Which versions of IBM InfoSphere are affected by CVE-2018-1727?
CVE-2018-1727 affects IBM InfoSphere Information Server versions 9.1, 11.3, 11.5, and 11.7.
What type of attack does CVE-2018-1727 involve?
CVE-2018-1727 involves an XML External Entity Injection (XXE) attack that can compromise data integrity.
What can an attacker achieve by exploiting CVE-2018-1727?
An attacker exploiting CVE-2018-1727 could potentially expose sensitive information or consume memory resources.