Логотип exploitDog
bind:CVE-2021-38555
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-38555

Количество 2

Количество 2

nvd логотип

CVE-2021-38555

больше 4 лет назад

An XML external entity (XXE) injection vulnerability was discovered in the Any23 StreamUtils.java file and is known to affect Any23 versions < 2.5. XML external entity injection (also known as XXE) is a web security vulnerability that allows an attacker to interfere with an application's processing of XML data. It often allows an attacker to view files on the application server filesystem, and to interact with any back-end or external systems that the application itself can access.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-838r-hvwh-24h8

больше 4 лет назад

XML Injection in Any23

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-38555

An XML external entity (XXE) injection vulnerability was discovered in the Any23 StreamUtils.java file and is known to affect Any23 versions < 2.5. XML external entity injection (also known as XXE) is a web security vulnerability that allows an attacker to interfere with an application's processing of XML data. It often allows an attacker to view files on the application server filesystem, and to interact with any back-end or external systems that the application itself can access.

CVSS3: 9.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-838r-hvwh-24h8

XML Injection in Any23

CVSS3: 9.1
1%
Низкий
больше 4 лет назад

Уязвимостей на страницу