Количество 2
Количество 2
CVE-2021-3312
больше 4 лет назад
An XML external entity (XXE) vulnerability in Alkacon OpenCms 11.0, 11.0.1 and 11.0.2 allows remote authenticated users with edit privileges to exfiltrate files from the server's file system by uploading a crafted SVG document.
CVSS3: 6.5
EPSS: Низкий
GHSA-g6v7-vqhx-6v6c
больше 4 лет назад
XML External Entity Reference in org.opencms:opencms-core
CVSS3: 6.5
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-3312 An XML external entity (XXE) vulnerability in Alkacon OpenCms 11.0, 11.0.1 and 11.0.2 allows remote authenticated users with edit privileges to exfiltrate files from the server's file system by uploading a crafted SVG document. | CVSS3: 6.5 | 0% Низкий | больше 4 лет назад | |
GHSA-g6v7-vqhx-6v6c XML External Entity Reference in org.opencms:opencms-core | CVSS3: 6.5 | 0% Низкий | больше 4 лет назад |
Уязвимостей на страницу
20