ZeroHour

CVE-2022-25628

CVSS 3.1
8.8 high
EPSS
<1%p57
Published
()
Modified
Description

An authenticated user can perform XML eXternal Entity injection in Management Console in Symantec Identity Manager 14.4

Vendors
broadcom
Products
symantec identity governance and administration
Weakness
CWE-611
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.