The XML parser in Cisco Information Server (CIS) 6.2 allows remote attackers to read arbitrary files or cause a denial of service (CPU and memory consumption) via an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue, aka Bug ID CSCuy39059.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Information_server | Cisco | 6.2_base (including) | 6.2_base (including) |