XML External Entity (XXE) vulnerability in Micro Focus Fortify Audit Workbench (AWB) and Micro Focus Fortify Software Security Center (SSC), versions 16.10, 16.20, 17.10. This vulnerability could be exploited to allow a XML External Entity (XXE) injection.
References
Link | Resource |
---|---|
https://softwaresupport.softwaregrp.com/document/-/facetsearch/document/KM03083653 | Vendor Advisory |
http://www.securityfocus.com/bid/102902 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2018-02-02 06:29
Updated : 2019-10-09 16:41
NVD link : CVE-2018-6486
Mitre link : CVE-2018-6486
JSON object : View
CWE
CWE-611
Improper Restriction of XML External Entity Reference
Products Affected
microfocus
- fortify_audit_workbench
- fortify_software_security_center