ibm security-identity-manager CVE-2018-2019 is a vulnerability in IBM Security Identity Manager
Published on January 18, 2019

IBM Security Identity Manager 6.0.0 Virtual Appliance is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 155265.

NVD


Products Associated with CVE-2018-2019

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2018-2019 are published in IBM Security Identity Manager:

 

Affected Versions

IBM Security Identity Manager Version 6.0.0 is affected by CVE-2018-2019

Exploit Probability

EPSS
0.52%
Percentile
66.14%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.