Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2018-1321

больше 8 лет назад

An administrator with report and template entitlements in Apache Syncope 1.2.x before 1.2.11, 2.0.x before 2.0.8, and unsupported releases 1.0.x and 1.1.x which may be also affected, can use XSL Transformations (XSLT) to perform malicious operations, including but not limited to file read, file write, and code execution.

CVSS3: 7.2
EPSS: Средний
github логотип

GHSA-xgc9-9w4v-h33h

почти 8 лет назад

High severity vulnerability that affects org.apache.syncope:syncope-core

CVSS3: 7.2
EPSS: Средний
fstec логотип

BDU:2020-00255

почти 8 лет назад

Уязвимость реализации технологии XSLT (eXtensible Stylesheet Language Transformations) системы для управления цифровыми идентификаторами Apache Syncope, позволяющая нарушителю осуществить чтение файла, запись файла или выполнить произвольный код

CVSS3: 7.2
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-1321

An administrator with report and template entitlements in Apache Syncope 1.2.x before 1.2.11, 2.0.x before 2.0.8, and unsupported releases 1.0.x and 1.1.x which may be also affected, can use XSL Transformations (XSLT) to perform malicious operations, including but not limited to file read, file write, and code execution.

CVSS3: 7.2
18%
Средний
больше 8 лет назад
github логотип
GHSA-xgc9-9w4v-h33h

High severity vulnerability that affects org.apache.syncope:syncope-core

CVSS3: 7.2
18%
Средний
почти 8 лет назад
fstec логотип
BDU:2020-00255

Уязвимость реализации технологии XSLT (eXtensible Stylesheet Language Transformations) системы для управления цифровыми идентификаторами Apache Syncope, позволяющая нарушителю осуществить чтение файла, запись файла или выполнить произвольный код

CVSS3: 7.2
18%
Средний
почти 8 лет назад

Уязвимостей на страницу