Описание
SOAPpy 0.12.5 allows remote attackers to read arbitrary files via a SOAP request containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.
Ссылки
- Exploit
- Exploit
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:makina-corpus:soappy:0.12.5:*:*:*:*:*:*:*
EPSS
Процентиль: 65%
0.005
Низкий
5 Medium
CVSS2
Дефекты
CWE-200
Связанные уязвимости
ubuntu
больше 11 лет назад
SOAPpy 0.12.5 allows remote attackers to read arbitrary files via a SOAP request containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.
redhat
почти 12 лет назад
SOAPpy 0.12.5 allows remote attackers to read arbitrary files via a SOAP request containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.
debian
больше 11 лет назад
SOAPpy 0.12.5 allows remote attackers to read arbitrary files via a SO ...
EPSS
Процентиль: 65%
0.005
Низкий
5 Medium
CVSS2
Дефекты
CWE-200