CVE-2015-7400: IBM Mashups Center

High severity, CVSS 7.7. EPSS: 2.6% chance of exploitation in the next 30 days.

The Lotus Mashups component in IBM Mashup Center 3.0.0.1 allows remote authenticated users to cause a denial of service (CPU consumption) via an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.

Affected products

  • IBM Mashups Center: version 3.0.0.1 only

Published 2016-01-02. Last modified 2026-06-17.