CVE-2018-6486: MFSBGN03797 rev.1 - Micro Focus Fortify Audit Workbench (AWB) and Micro Focus Fortify Software Security Center (SSC), XML External Entity Injection
XML External Entity (XXE) vulnerability in Micro Focus Fortify Audit Workbench (AWB) and Micro Focus Fortify Software Security Center (SSC), versions 16.10, 16.20, 17.10. This vulnerability could be exploited to allow a XML External Entity (XXE) injection.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-6486?
CVE-2018-6486 has been rated as a moderate severity vulnerability due to its potential impact on data integrity and confidentiality.
How do I fix CVE-2018-6486?
To fix CVE-2018-6486, update Micro Focus Fortify Audit Workbench and Fortify Software Security Center to the latest patched versions provided by Micro Focus.
What impact does CVE-2018-6486 have if exploited?
Exploitation of CVE-2018-6486 could lead to unauthorized access to sensitive data and potentially system compromise through XML External Entity injection.
Which versions are affected by CVE-2018-6486?
CVE-2018-6486 affects Micro Focus Fortify Audit Workbench and Fortify Software Security Center versions 16.10, 16.20, and 17.10.
Is there a workaround for CVE-2018-6486?
There are no official workarounds for CVE-2018-6486; upgrading to a safe version is recommended.