Lucene search

K
redhatcveRedhat.comRH:CVE-2016-2175
HistoryMay 27, 2016 - 9:48 a.m.

CVE-2016-2175

2016-05-2709:48:54
redhat.com
access.redhat.com
13

0.001 Low

EPSS

Percentile

39.2%

It was found that the parsing of XMP and other XML formats in PDF by Apache PDFBox would expand entity references. A remote, unauthenticated attacker could use this flaw to read files accessible to the user running the application server, and potentially perform other more advanced XXE attacks.