Логотип exploitDog
bind:CVE-2012-3363
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2012-3363

Количество 4

Количество 4

ubuntu логотип

CVE-2012-3363

почти 13 лет назад

Zend_XmlRpc in Zend Framework 1.x before 1.11.12 and 1.12.x before 1.12.0 does not properly handle SimpleXMLElement classes, which allows remote attackers to read arbitrary files or create TCP connections via an external entity reference in a DOCTYPE element in an XML-RPC request, aka an XML external entity (XXE) injection attack.

CVSS3: 9.1
EPSS: Средний
nvd логотип

CVE-2012-3363

почти 13 лет назад

Zend_XmlRpc in Zend Framework 1.x before 1.11.12 and 1.12.x before 1.12.0 does not properly handle SimpleXMLElement classes, which allows remote attackers to read arbitrary files or create TCP connections via an external entity reference in a DOCTYPE element in an XML-RPC request, aka an XML external entity (XXE) injection attack.

CVSS3: 9.1
EPSS: Средний
debian логотип

CVE-2012-3363

почти 13 лет назад

Zend_XmlRpc in Zend Framework 1.x before 1.11.12 and 1.12.x before 1.1 ...

CVSS3: 9.1
EPSS: Средний
github логотип

GHSA-7pg4-5233-82jv

больше 3 лет назад

Zend Framework XXE Vulnerability

CVSS3: 7.3
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2012-3363

Zend_XmlRpc in Zend Framework 1.x before 1.11.12 and 1.12.x before 1.12.0 does not properly handle SimpleXMLElement classes, which allows remote attackers to read arbitrary files or create TCP connections via an external entity reference in a DOCTYPE element in an XML-RPC request, aka an XML external entity (XXE) injection attack.

CVSS3: 9.1
55%
Средний
почти 13 лет назад
nvd логотип
CVE-2012-3363

Zend_XmlRpc in Zend Framework 1.x before 1.11.12 and 1.12.x before 1.12.0 does not properly handle SimpleXMLElement classes, which allows remote attackers to read arbitrary files or create TCP connections via an external entity reference in a DOCTYPE element in an XML-RPC request, aka an XML external entity (XXE) injection attack.

CVSS3: 9.1
55%
Средний
почти 13 лет назад
debian логотип
CVE-2012-3363

Zend_XmlRpc in Zend Framework 1.x before 1.11.12 and 1.12.x before 1.1 ...

CVSS3: 9.1
55%
Средний
почти 13 лет назад
github логотип
GHSA-7pg4-5233-82jv

Zend Framework XXE Vulnerability

CVSS3: 7.3
55%
Средний
больше 3 лет назад

Уязвимостей на страницу