Security Advisory

CVE-2021-22498

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-01-19 15:56:44
Last updated 2024-08-03 18:44:13
Assigner microfocus
State PUBLISHED

Description

XML External Entity Injection vulnerability in Micro Focus Application Lifecycle Management (Previously known as Quality Center) product. The vulnerability affects versions 12.x, 12.60 Patch 5 and earlier, 15.0.1 Patch 2 and earlier and 15.5. The vulnerability could be exploited to allow an XML External Entity Injection.