Zurück zur CVE-Übersicht
CVE-2026-17443
MEDIUM(5.3)CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
Risk Signal Score13/100 — NIEDRIG
- CVSS 5.3 — Mittel
Erwähnungen (letzte 60 Tage)
Artikel
EPSS-Score
0.3%
Exploit-Wahrscheinlichkeit (30 Tage)
CVSS Score
5.3
Technische Schwere
Beschreibung
IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.28 and IBM Integration Bus for z/OS 10.1.0.0 through 10.1.0.7 could allow a remote authenticated attacker to obtain sensitive information due to an XML external entity (XXE) injection flaw.
Betroffene Produkte
- cpe:2.3:a:ibm:app_connect_enterprise:*:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:app_connect_enterprise:*:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:integration_bus_for_z\/os:*:*:*:*:*:*:*:*