Lucene search

K
prionPRIOn knowledge basePRION:CVE-2011-5245
HistoryNov 23, 2012 - 8:55 p.m.

Xxe

2012-11-2320:55:00
PRIOn knowledge base
www.prio-n.com
7

7 High

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

72.9%

The readFrom function in providers.jaxb.JAXBXmlTypeProvider in RESTEasy before 2.3.2 allows remote attackers to read arbitrary files via an external entity reference in a Java Architecture for XML Binding (JAXB) input, aka an XML external entity (XXE) injection attack, a similar vulnerability to CVE-2012-0818.

7 High

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

72.9%