Lucene search

K
prionPRIOn knowledge basePRION:CVE-2019-11068
HistoryApr 10, 2019 - 8:29 p.m.

Authentication flaw

2019-04-1020:29:00
PRIOn knowledge base
www.prio-n.com
11

9.2 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

65.5%

libxslt through 1.1.33 allows bypass of a protection mechanism because callers of xsltCheckRead and xsltCheckWrite permit access even upon receiving a -1 error code. xsltCheckRead can return -1 for a crafted URL that is not actually invalid and is subsequently loaded.

References