Security Advisory

CVE-2016-3033

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2016-12-01 11:00:00
Last updated 2024-08-05 23:40:15
Assigner ibm
State PUBLISHED

Description

IBM AppScan Source 8.7 through 9.0.3.3 allows remote authenticated users to read arbitrary files or cause a denial of service (memory consumption) via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.