CVE-2016-6059: IBM InfoSphere Datastage

High severity, CVSS 8.1. EPSS: 1.5% chance of exploitation in the next 30 days.

IBM InfoSphere Information Server is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume all available memory resources.

Affected products

  • IBM InfoSphere Datastage: version 11.3 only; version 11.3.1 only; version 11.5 only
  • IBM InfoSphere Information Server: version 11.3 only; version 11.3.1 only; version 11.5 only
  • IBM InfoSphere Information Server On Cloud: version 11.5 only

Published 2017-02-01. Last modified 2026-06-17.