ZeroHour

CVE-2016-9707

CVSS 3.0
8.1 high
EPSS
2%p73
Published
()
Modified
Description

IBM Jazz Foundation is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume all available memory resources. IBM Reference #: 2000784.

Vendors
ibm
Products
rational rhapsody design manager, rational quality manager, rational engineering lifecycle manager, rational software architect design manager, rational collaborative lifecycle management, rational doors next generation, rational team concert
Weakness
CWE-611
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

In the news

No ingested article mentions this CVE yet.