The Lotus Mashups component in IBM Mashup Center 3.0.0.1 allows remote authenticated users to cause a denial of service (CPU consumption) via an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.
References
Configurations
History
21 Nov 2024, 02:36
Type | Values Removed | Values Added |
---|---|---|
References | () http://www-01.ibm.com/support/docview.wss?uid=swg1IT12268 - | |
References | () http://www-01.ibm.com/support/docview.wss?uid=swg21970392 - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/77986 - | |
References | () http://www.securitytracker.com/id/1035319 - |
Information
Published : 2016-01-02 21:59
Updated : 2024-11-21 02:36
NVD link : CVE-2015-7400
Mitre link : CVE-2015-7400
CVE.ORG link : CVE-2015-7400
JSON object : View
Products Affected
ibm
- mashups_center
CWE
CWE-399
Resource Management Errors