TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2017-7464

N/A

Beschreibung

It was found that the JAXP implementation used in JBoss EAP 7.0 for SAX and DOM parsing is vulnerable to certain XXE flaws. An attacker could use this flaw to cause DoS, SSRF, or information disclosure if they are able to provide XML content for parsing.

CVE Details

CVSS v3.1 BewertungN/A
Veroffentlicht7/27/2018
Zuletzt geandert11/21/2024
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

redhat:jboss_enterprise_application_platform

Schwachen (CWE)

CWE-611CWE-611

Referenzen

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.