Assigner | OpenText |
Reserved | 2024-04-08 |
Published | 2024-05-15 |
Updated | 2024-06-04 |
Description
XML External Entity injection vulnerability found in OpenText™ iManager 3.2.6.0200. This could lead to information disclosure and remote code execution.
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H |
Problem types
CWE-611 Improper Restriction of XML External Entity Reference
Product status
3.0.0
Credits
Blaine Herro (Yahoo! Inc. VRT)