Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7g54-vgp6-jj5w

Опубликовано: 17 мая 2022
Источник: github
Github: Прошло ревью
CVSS3: 9.8

Описание

XML External Entity Reference in Apache Sling

In the XSS Protection API module before 1.0.12 in Apache Sling, the method XSS.getValidXML() uses an insecure SAX parser to validate the input string, which allows for XXE attacks in all scripts which use this method to validate user input, potentially allowing an attacker to read sensitive data on the filesystem, perform same-site-request-forgery (SSRF), port-scanning behind the firewall or DoS the application.

Пакеты

Наименование

org.apache.sling:org.apache.sling.xss

maven
Затронутые версииВерсия исправления

< 1.0.12

1.0.12

Наименование

org.apache.sling:org.apache.sling.xss.compat

maven
Затронутые версииВерсия исправления

< 1.1.0

1.1.0

EPSS

Процентиль: 80%
0.01343
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-611

Связанные уязвимости

CVSS3: 9.8
nvd
больше 8 лет назад

In the XSS Protection API module before 1.0.12 in Apache Sling, the method XSS.getValidXML() uses an insecure SAX parser to validate the input string, which allows for XXE attacks in all scripts which use this method to validate user input, potentially allowing an attacker to read sensitive data on the filesystem, perform same-site-request-forgery (SSRF), port-scanning behind the firewall or DoS the application.

EPSS

Процентиль: 80%
0.01343
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-611