Quantcast
Channel: THWACK: Message List - Security Event Manager (SEM) - Formerly Log & Event Manager
Viewing all articles
Browse latest Browse all 5385

Re: Apache Flex BlazeDS XXE Injection Risk

$
0
0

HI fedchoice,

 

The previous XXE fix that support was referring to as being fixed was DDIVRT-2015-55 SolarWinds Log and Event Manager Remote Command Execution - Digital Defense Inc. it may have been mistaken that when you reported the "Apache Flex BlazeDS XXE Injection" that it was the same one that was fixed instead of the new one that you reported.   At the core that previous one was an XXE fix that was done and the one you are referring to is being looked into.

 

Noting also the other fix was referenced in SolarWinds Log & Event Manager 6.2.1 Release Notes


Viewing all articles
Browse latest Browse all 5385

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>