Informationbuilders develops data quality and business intelligence platforms, with vulnerabilities concentrated in products such as its Data Quality Suite and WebFocus analytics offerings that serve enterprise data integration and reporting functions. The observed weakness classes center on command injection and XML external entity handling, reflecting input-processing risks endemic to data-ingestion and transformation workflows.
The number and severity of CVEs published that impact products developed by Informationbuilders over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-17411CRITICAL An XML External Entity (XXE) vulnerability exists in iWay Data Quality Suite Web Console 10.6.1.ga-2016-11-20. | Sep 26, 2018 | 9.8 | 30 | NO | NO |
CVE-2016-9044HIGH An exploitable command execution vulnerability exists in Information Builders WebFOCUS Business Intelligence Portal 8.1 . A specially crafted web parameter can cause a command inje | Sep 7, 2018 | 8.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Informationbuilders.
Media articles that mention a CVE ID that affects a product developed by Informationbuilders — matched by CVE ID, not by vendor name.