Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-7839

Опубликовано: 25 нояб. 2014
Источник: ubuntu
Приоритет: medium
CVSS2: 6.4

Описание

DocumentProvider in RESTEasy 2.3.7 and 3.0.9 does not configure the (1) external-general-entities or (2) external-parameter-entities features, which allows remote attackers to conduct XML external entity (XXE) attacks via unspecified vectors.

РелизСтатусПримечание
artful

ignored

end of life
bionic

DNE

cosmic

DNE

devel

not-affected

3.0.6-2
esm-apps/xenial

not-affected

3.0.6-2
esm-infra-legacy/trusty

DNE

lucid

DNE

precise

DNE

precise/esm

DNE

trusty

DNE

Показывать по

6.4 Medium

CVSS2

Связанные уязвимости

redhat
около 11 лет назад

DocumentProvider in RESTEasy 2.3.7 and 3.0.9 does not configure the (1) external-general-entities or (2) external-parameter-entities features, which allows remote attackers to conduct XML external entity (XXE) attacks via unspecified vectors.

nvd
около 11 лет назад

DocumentProvider in RESTEasy 2.3.7 and 3.0.9 does not configure the (1) external-general-entities or (2) external-parameter-entities features, which allows remote attackers to conduct XML external entity (XXE) attacks via unspecified vectors.

debian
около 11 лет назад

DocumentProvider in RESTEasy 2.3.7 and 3.0.9 does not configure the (1 ...

github
больше 3 лет назад

XML External Entity Reference in RESTEasy

6.4 Medium

CVSS2