Логотип exploitDog
bind: "CVE-2018-1000632"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2018-1000632"

Количество 11

Количество 11

ubuntu логотип

CVE-2018-1000632

больше 7 лет назад

dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2018-1000632

больше 7 лет назад

dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2018-1000632

больше 7 лет назад

dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2018-1000632

больше 7 лет назад

dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection ...

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:3998-1

около 7 лет назад

Security update for dom4j

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:2931-1

больше 7 лет назад

Security update for dom4j

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:3908-1

около 7 лет назад

Security update for dom4j

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:3424-1

около 7 лет назад

Security update for dom4j

EPSS: Низкий
github логотип

GHSA-6pcc-3rfx-4gpm

больше 7 лет назад

Dom4j contains a XML Injection vulnerability

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2025-11250

больше 7 лет назад

Уязвимость методов addElement и addAttribute библиотеки для работы с XML, XPath и XSLT dom4j, позволяющая нарушителю проводить XXE-атаки

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20250822-02

5 месяцев назад

Уязвимость dom4j

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-1000632

dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.

CVSS3: 7.5
2%
Низкий
больше 7 лет назад
redhat логотип
CVE-2018-1000632

dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.

CVSS3: 5.3
2%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-1000632

dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.

CVSS3: 7.5
2%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-1000632

dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection ...

CVSS3: 7.5
2%
Низкий
больше 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:3998-1

Security update for dom4j

2%
Низкий
около 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2931-1

Security update for dom4j

2%
Низкий
больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:3908-1

Security update for dom4j

2%
Низкий
около 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:3424-1

Security update for dom4j

2%
Низкий
около 7 лет назад
github логотип
GHSA-6pcc-3rfx-4gpm

Dom4j contains a XML Injection vulnerability

CVSS3: 7.5
2%
Низкий
больше 7 лет назад
fstec логотип
BDU:2025-11250

Уязвимость методов addElement и addAttribute библиотеки для работы с XML, XPath и XSLT dom4j, позволяющая нарушителю проводить XXE-атаки

CVSS3: 7.5
2%
Низкий
больше 7 лет назад
redos логотип
ROS-20250822-02

Уязвимость dom4j

CVSS3: 7.5
2%
Низкий
5 месяцев назад

Уязвимостей на страницу