Описание
An XML eXternal Entity (XXE) issue exists in Restlet 1.1.10 in an endpoint using XML transport, which lets a remote attacker obtain sensitive information.
Отчет
Not Vulnerable. This issue does not affect the versions of Restlet as shipped with various Red Hat products.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat JBoss Enterprise Web Server 1 | restlet | Not affected |
Показывать по
10
Дополнительная информация
Статус:
Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=999809Restlet: XML eXternal Entity (XXE) flaw
EPSS
Процентиль: 77%
0.01037
Низкий
5 Medium
CVSS2
Связанные уязвимости
CVSS3: 7.5
nvd
около 6 лет назад
An XML eXternal Entity (XXE) issue exists in Restlet 1.1.10 in an endpoint using XML transport, which lets a remote attacker obtain sensitive information.
CVSS3: 7.5
debian
около 6 лет назад
An XML eXternal Entity (XXE) issue exists in Restlet 1.1.10 in an endp ...
github
почти 4 года назад
An XML eXternal Entity (XXE) issue exists in Restlet 1.1.10 in an endpoint using XML transport, which lets a remote attacker obtain sensitive information.
EPSS
Процентиль: 77%
0.01037
Низкий
5 Medium
CVSS2