XML External Entity Injection Vulnerability in IBM Content Management Solutions
CVE-2018-1542
What is CVE-2018-1542?
IBM FileNet Content Manager, IBM Content Foundation, and IBM Case Foundation Administration Console for Content Platform Engine versions 5.2.1 and 5.5.0 are susceptible to an XML External Entity Injection (XXE) vulnerability. This occurs when the products process XML data that may allow a remote attacker to exploit this weakness. Successful exploitation could result in the unauthorized exposure of sensitive information and excessive consumption of system memory resources, potentially leading to denial of service.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
FileNet P8 Platform 5.2.1
FileNet P8 Platform 5.5.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved