Wednesday, July 15, 2020

Security Bulletin: XML External Entity Injection (XXE) Vulnerability Affects IBM Secure External Authentication Server (CVE-2020-4462)

Jul 15, 2020 8:01 pm EDT

Categorized: High Severity

Share this post:

An XXE vulnerability was addressed by IBM Secure External Authentication Server.

Affected product(s) and affected version(s):

Affected Product(s) Version(s)
Sterling External Authentication Server 2.4.2
IBM External Authentication Server 6.0
IBM External Authentication Server 6.0.1 6.0.1
IBM Sterling External Authentication Server 2.4.3.2

Refer to the following reference URLs for remediation and additional vulnerability details:  
Source Bulletin: https://www.ibm.com/support/pages/node/6249317



from IBM Product Security Incident Response Team https://ift.tt/2WiS2pN

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.