Vulnerability Bulletins |
IBM Security Bulletin: IBM Business Process Manager (BPM) document store is susceptible to XXE (XML External Entity) attacks. (CVE-2013-5452) |
|
| Affected software | IBM |
|
An XML eXternal Entity (XXE) vulnerability has been reported for the embedded component used by IBM BPM document store. CVE(s): CVE-2013-5452 Affected product(s) and affected version(s): IBM Business Process Manager V8.5.5.0 and V8.5.6.0 Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg21963014 X-Force Database: http://exchange.xforce.ibmcloud.com/vulnerabilities/88192 More info: https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_business_process_manager_bpm_document_store_is_susceptible_to_xxe_xml_external_entity_attacks_cve_2013_5452?lang=en_us |
|






