Количество 4
Количество 4
CVE-2012-4399
The Xml class in CakePHP 2.1.x before 2.1.5 and 2.2.x before 2.2.1 allows remote attackers to read arbitrary files via XML data containing external entity references, aka an XML external entity (XXE) injection attack.
CVE-2012-4399
The Xml class in CakePHP 2.1.x before 2.1.5 and 2.2.x before 2.2.1 allows remote attackers to read arbitrary files via XML data containing external entity references, aka an XML external entity (XXE) injection attack.
CVE-2012-4399
The Xml class in CakePHP 2.1.x before 2.1.5 and 2.2.x before 2.2.1 all ...
GHSA-5964-pq8r-4q62
CakePHPallows remote attackers to read arbitrary files via XML data containing external entity references
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2012-4399 The Xml class in CakePHP 2.1.x before 2.1.5 and 2.2.x before 2.2.1 allows remote attackers to read arbitrary files via XML data containing external entity references, aka an XML external entity (XXE) injection attack. | CVSS3: 7.5 | 25% Средний | больше 13 лет назад | |
CVE-2012-4399 The Xml class in CakePHP 2.1.x before 2.1.5 and 2.2.x before 2.2.1 allows remote attackers to read arbitrary files via XML data containing external entity references, aka an XML external entity (XXE) injection attack. | CVSS3: 7.5 | 25% Средний | больше 13 лет назад | |
CVE-2012-4399 The Xml class in CakePHP 2.1.x before 2.1.5 and 2.2.x before 2.2.1 all ... | CVSS3: 7.5 | 25% Средний | больше 13 лет назад | |
GHSA-5964-pq8r-4q62 CakePHPallows remote attackers to read arbitrary files via XML data containing external entity references | CVSS3: 7.5 | 25% Средний | больше 3 лет назад |
Уязвимостей на страницу