XXE attack in IBM Tivoli Federated Identity Manager - CVE-2018-1443

 

XXE attack in IBM Tivoli Federated Identity Manager - CVE-2018-1443

Published: March 7, 2018


Vulnerability identifier: #VU10881
CSH Severity: Low
CVSS v4: 5.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-1443
CWE-ID: CWE-611
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote authenticated attacker to perform XXE attack and bypass security restrictions.

The vulnerability exists in SAML-based single sign-on (SSO) systems due to improper handling of XML External Entity (XXE) entries when parsing an XML file. A remote attacker can trick SAML systems into authenticating as a different user without knowledge of the victim users password and bypass security restrictions to perform further attacks.

Affected software

IBM Tivoli Federated Identity Manager
IBM Security Verify Access

How to mitigate CVE-2018-1443

Install update from vendor's website.


External References

Related Security Bulletins