Логотип exploitDog
bind:CVE-2017-7375
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-7375

Количество 8

Количество 8

ubuntu логотип

CVE-2017-7375

почти 8 лет назад

A flaw in libxml2 allows remote XML entity inclusion with default parser flags (i.e., when the caller did not request entity substitution, DTD validation, external DTD subset loading, or default DTD attributes). Depending on the context, this may expose a higher-risk attack surface in libxml2 not usually reachable with default parser flags, and expose content from local files, HTTP, or FTP servers (which might be otherwise unreachable).

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2017-7375

почти 9 лет назад

A flaw in libxml2 allows remote XML entity inclusion with default parser flags (i.e., when the caller did not request entity substitution, DTD validation, external DTD subset loading, or default DTD attributes). Depending on the context, this may expose a higher-risk attack surface in libxml2 not usually reachable with default parser flags, and expose content from local files, HTTP, or FTP servers (which might be otherwise unreachable).

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2017-7375

почти 8 лет назад

A flaw in libxml2 allows remote XML entity inclusion with default parser flags (i.e., when the caller did not request entity substitution, DTD validation, external DTD subset loading, or default DTD attributes). Depending on the context, this may expose a higher-risk attack surface in libxml2 not usually reachable with default parser flags, and expose content from local files, HTTP, or FTP servers (which might be otherwise unreachable).

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2017-7375

почти 8 лет назад

A flaw in libxml2 allows remote XML entity inclusion with default pars ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-ww2p-x466-vpwf

больше 3 лет назад

A flaw in libxml2 allows remote XML entity inclusion with default parser flags (i.e., when the caller did not request entity substitution, DTD validation, external DTD subset loading, or default DTD attributes). Depending on the context, this may expose a higher-risk attack surface in libxml2 not usually reachable with default parser flags, and expose content from local files, HTTP, or FTP servers (which might be otherwise unreachable).

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2019-00235

почти 9 лет назад

Уязвимость компонента xmlParsePEReference библиотеки для работы с XML и HTML файлами libxml2, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

CVSS3: 9.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2017:1810-1

больше 8 лет назад

Security update for libxml2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:1813-1

больше 8 лет назад

Security update for libxml2

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2017-7375

A flaw in libxml2 allows remote XML entity inclusion with default parser flags (i.e., when the caller did not request entity substitution, DTD validation, external DTD subset loading, or default DTD attributes). Depending on the context, this may expose a higher-risk attack surface in libxml2 not usually reachable with default parser flags, and expose content from local files, HTTP, or FTP servers (which might be otherwise unreachable).

CVSS3: 9.8
0%
Низкий
почти 8 лет назад
redhat логотип
CVE-2017-7375

A flaw in libxml2 allows remote XML entity inclusion with default parser flags (i.e., when the caller did not request entity substitution, DTD validation, external DTD subset loading, or default DTD attributes). Depending on the context, this may expose a higher-risk attack surface in libxml2 not usually reachable with default parser flags, and expose content from local files, HTTP, or FTP servers (which might be otherwise unreachable).

CVSS3: 6.5
0%
Низкий
почти 9 лет назад
nvd логотип
CVE-2017-7375

A flaw in libxml2 allows remote XML entity inclusion with default parser flags (i.e., when the caller did not request entity substitution, DTD validation, external DTD subset loading, or default DTD attributes). Depending on the context, this may expose a higher-risk attack surface in libxml2 not usually reachable with default parser flags, and expose content from local files, HTTP, or FTP servers (which might be otherwise unreachable).

CVSS3: 9.8
0%
Низкий
почти 8 лет назад
debian логотип
CVE-2017-7375

A flaw in libxml2 allows remote XML entity inclusion with default pars ...

CVSS3: 9.8
0%
Низкий
почти 8 лет назад
github логотип
GHSA-ww2p-x466-vpwf

A flaw in libxml2 allows remote XML entity inclusion with default parser flags (i.e., when the caller did not request entity substitution, DTD validation, external DTD subset loading, or default DTD attributes). Depending on the context, this may expose a higher-risk attack surface in libxml2 not usually reachable with default parser flags, and expose content from local files, HTTP, or FTP servers (which might be otherwise unreachable).

CVSS3: 9.8
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2019-00235

Уязвимость компонента xmlParsePEReference библиотеки для работы с XML и HTML файлами libxml2, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

CVSS3: 9.8
0%
Низкий
почти 9 лет назад
suse-cvrf логотип
openSUSE-SU-2017:1810-1

Security update for libxml2

больше 8 лет назад
suse-cvrf логотип
SUSE-SU-2017:1813-1

Security update for libxml2

больше 8 лет назад

Уязвимостей на страницу