← Back to CVE search

CVE-2026-14979

IBM Engineering Lifecycle Management

Description

IBM Engineering Lifecycle Management 7.0.3 ( Interim Fix 001 through ) Interim Fix 021, 7.1.0 ( Interim Fix 001 through ) Interim Fix 009, and 7.2.0 and 7.2.0 Interim Fix 001 DOORS could allow a remote attacker to cause a denial of service due to improper handling of XML entity expansion.

CVSS 5.3EPSS 0.357%Risk 0.55
View source
Published
2026-07-17 20:17:15
Affected versions
<=7.0.3, <=7.1.0, <=7.2.0
Type
Critical software
Last modified
2026-08-11 23:07:35
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L