Логотип exploitDog
bind:CVE-2016-8739
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-8739

Количество 3

Количество 3

redhat логотип

CVE-2016-8739

около 9 лет назад

The JAX-RS module in Apache CXF prior to 3.0.12 and 3.1.x prior to 3.1.9 provides a number of Atom JAX-RS MessageBodyReaders. These readers use Apache Abdera Parser which expands XML entities by default which represents a major XXE risk.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2016-8739

больше 8 лет назад

The JAX-RS module in Apache CXF prior to 3.0.12 and 3.1.x prior to 3.1.9 provides a number of Atom JAX-RS MessageBodyReaders. These readers use Apache Abdera Parser which expands XML entities by default which represents a major XXE risk.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-x7xf-253v-x3w8

больше 3 лет назад

Improper Restriction of XML External Entity Reference in Apache CXF JAX-RS

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2016-8739

The JAX-RS module in Apache CXF prior to 3.0.12 and 3.1.x prior to 3.1.9 provides a number of Atom JAX-RS MessageBodyReaders. These readers use Apache Abdera Parser which expands XML entities by default which represents a major XXE risk.

CVSS3: 6.5
3%
Низкий
около 9 лет назад
nvd логотип
CVE-2016-8739

The JAX-RS module in Apache CXF prior to 3.0.12 and 3.1.x prior to 3.1.9 provides a number of Atom JAX-RS MessageBodyReaders. These readers use Apache Abdera Parser which expands XML entities by default which represents a major XXE risk.

CVSS3: 7.5
3%
Низкий
больше 8 лет назад
github логотип
GHSA-x7xf-253v-x3w8

Improper Restriction of XML External Entity Reference in Apache CXF JAX-RS

CVSS3: 7.5
3%
Низкий
больше 3 лет назад

Уязвимостей на страницу