WAFs were a top-notch security instrument a decade ago, but now they are not. They fail to protect APIs. Meanwhile, the number of API-specific vulnerabilities grew more than twofold in 2022. According ...
Continue ReadingOctober 17, 2022
## Summary The libexpart parser that is used by IBM Tivoli Monitoring for parsing various configuration xml files and parsing soap requests is potentially vulnerable to remote code execution [CVE-2022 ...
Continue ReadingOctober 04, 2022
## Abstract An SSL vulnerability exists in Apache Axis which is used by InfoSphere Guardium Data Redaction to process HTTPS requests from the Redaction SOAP API . ## Content **VULNERABILITY DETAILS: * ...
Continue ReadingSeptember 29, 2022
## Abstract IMS Enterprise Suite SOAP Gateway V1.1, V2.1, and V2.2 security vulnerabilities in SSL connections and login processes. ## Content **Security Bulletin: Multiple vulnerabilities exist in ...
Continue ReadingSeptember 29, 2022
## Abstract The SOAP Gateway component of IMS Enterprise Suite versions 1.1, 2.1, and 2.2 is affected by multiple vulnerabilities in IBM® Java and could allow remote, arbitrary command execution. ...
Continue ReadingSeptember 29, 2022
## Abstract Cross reference list for security vulnernabilities fixed in IBM WebSphere Appplication Server Fix Pack 8.5.5 ## Content **VULNERABILITY DETAILS: ** **CVE ID: ****_CVE-2013-0482 (PM76582)_* ...
Continue ReadingSeptember 29, 2022
soap is vulnerable to information disclosure. The vulnerability exists due to the lack of restrictions in the XML external entity reference of the library, allowing an attacker to read arbitrary files ...
Continue ReadingSeptember 28, 2022
An Improper Restriction of XML External Entity Reference vulnerability in RPCRouterServlet of Apache SOAP allows an attacker to read arbitrary files over HTTP. This issue affects Apache SOAP version 2 ...
Continue ReadingSeptember 27, 2022
Back to Main