9.1
CVSSv3

CVE-2022-22486

Published: 03/02/2023 Updated: 07/11/2023
CVSS v3 Base Score: 9.1 | Impact Score: 5.2 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

IBM Tivoli Workload Scheduler 9.4, 9.5, and 10.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 226328.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm tivoli workload scheduler 9.4

ibm tivoli workload scheduler 9.5

ibm tivoli workload scheduler 10.1