Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2013-6408

больше 12 лет назад

The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does not properly use the EmptyEntityResolver, which allows remote attackers to have an unspecified impact via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-6407.

CVSS2: 6.4
EPSS: Средний
redhat логотип

CVE-2013-6408

около 13 лет назад

The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does not properly use the EmptyEntityResolver, which allows remote attackers to have an unspecified impact via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-6407.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2013-6408

больше 12 лет назад

The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does not properly use the EmptyEntityResolver, which allows remote attackers to have an unspecified impact via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-6407.

CVSS2: 6.4
EPSS: Средний
debian логотип

CVE-2013-6408

больше 12 лет назад

The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does no ...

CVSS2: 6.4
EPSS: Средний
github логотип

GHSA-45w3-2hvv-pfxq

больше 4 лет назад

XML Injection in Apache Solr

EPSS: Средний
fstec логотип

BDU:2015-04135

больше 12 лет назад

Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность и доступность защищаемой информации

CVSS2: 6.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2013-6408

The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does not properly use the EmptyEntityResolver, which allows remote attackers to have an unspecified impact via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-6407.

CVSS2: 6.4
11%
Средний
больше 12 лет назад
redhat логотип
CVE-2013-6408

The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does not properly use the EmptyEntityResolver, which allows remote attackers to have an unspecified impact via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-6407.

CVSS2: 5
11%
Средний
около 13 лет назад
nvd логотип
CVE-2013-6408

The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does not properly use the EmptyEntityResolver, which allows remote attackers to have an unspecified impact via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-6407.

CVSS2: 6.4
11%
Средний
больше 12 лет назад
debian логотип
CVE-2013-6408

The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does no ...

CVSS2: 6.4
11%
Средний
больше 12 лет назад
github логотип
GHSA-45w3-2hvv-pfxq

XML Injection in Apache Solr

11%
Средний
больше 4 лет назад
fstec логотип
BDU:2015-04135

Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность и доступность защищаемой информации

CVSS2: 6.4
больше 12 лет назад

Уязвимостей на страницу