Логотип exploitDog
bind:CVE-2018-17289
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-17289

Количество 2

Количество 2

nvd логотип

CVE-2018-17289

почти 7 лет назад

An XML external entity (XXE) vulnerability in Kofax Front Office Server Administration Console version 4.1.1.11.0.5212 allows remote authenticated users to read arbitrary files via crafted XML inside an imported package configuration (.ZIP file) within the Kofax/KFS/Admin/PackageService/package/upload file parameter.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4w37-q3jv-2mwp

больше 3 лет назад

An XML external entity (XXE) vulnerability in Kofax Front Office Server Administration Console version 4.1.1.11.0.5212 allows remote authenticated users to read arbitrary files via crafted XML inside an imported package configuration (.ZIP file) within the Kofax/KFS/Admin/PackageService/package/upload file parameter.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-17289

An XML external entity (XXE) vulnerability in Kofax Front Office Server Administration Console version 4.1.1.11.0.5212 allows remote authenticated users to read arbitrary files via crafted XML inside an imported package configuration (.ZIP file) within the Kofax/KFS/Admin/PackageService/package/upload file parameter.

CVSS3: 6.5
0%
Низкий
почти 7 лет назад
github логотип
GHSA-4w37-q3jv-2mwp

An XML external entity (XXE) vulnerability in Kofax Front Office Server Administration Console version 4.1.1.11.0.5212 allows remote authenticated users to read arbitrary files via crafted XML inside an imported package configuration (.ZIP file) within the Kofax/KFS/Admin/PackageService/package/upload file parameter.

CVSS3: 6.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу