Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2qqc-4hrp-xvcg

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM SPSS Modeler 14.0, 14.1, 14.2 through FP3, and 15.0 before FP2 allows remote attackers to read arbitrary files, and possibly send HTTP requests to intranet servers or cause a denial of service (CPU and memory consumption), via an XML external entity declaration in conjunction with an entity reference.

IBM SPSS Modeler 14.0, 14.1, 14.2 through FP3, and 15.0 before FP2 allows remote attackers to read arbitrary files, and possibly send HTTP requests to intranet servers or cause a denial of service (CPU and memory consumption), via an XML external entity declaration in conjunction with an entity reference.

EPSS

Процентиль: 69%
0.00616
Низкий

Связанные уязвимости

nvd
около 13 лет назад

IBM SPSS Modeler 14.0, 14.1, 14.2 through FP3, and 15.0 before FP2 allows remote attackers to read arbitrary files, and possibly send HTTP requests to intranet servers or cause a denial of service (CPU and memory consumption), via an XML external entity declaration in conjunction with an entity reference.

EPSS

Процентиль: 69%
0.00616
Низкий