IBM webMethods Integration Server 10.5, 10.7, 10.11, and 10.15
is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A remote authenticated attacker could exploit this vulnerability to execute arbitrary commands.
References
Link | Resource |
---|---|
https://www.ibm.com/support/pages/node/7237146 |
Configurations
No configuration.
History
18 Jun 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-06-18 16:15
Updated : 2025-06-18 16:15
NVD link : CVE-2025-36049
Mitre link : CVE-2025-36049
CVE.ORG link : CVE-2025-36049
JSON object : View
Products Affected
No product.
CWE
CWE-611
Improper Restriction of XML External Entity Reference