Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-12623
HistoryOct 10, 2017 - 6:29 p.m.

Xxe

2017-10-1018:29:00
PRIOn knowledge base
www.prio-n.com

6.5 Medium

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

17.3%

An authorized user could upload a template which contained malicious code and accessed sensitive files via an XML External Entity (XXE) attack. The fix to properly handle XML External Entities was applied on the Apache NiFi 1.4.0 release. Users running a prior 1.x release should upgrade to the appropriate release.

6.5 Medium

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

17.3%

Related for PRION:CVE-2017-12623