Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:20675
HistoryJul 08, 2019 - 8:46 a.m.

XML External Entity (XXE)

2019-07-0808:46:48
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
3

0.001 Low

EPSS

Percentile

30.2%

umbraco cms is vulnerable to XML external entity (XXE) attacks. Lack of validation and permitting of external DTDs allow attackers to obtain confidential information via an SSRF from the XXE attack.

0.001 Low

EPSS

Percentile

30.2%

Related for VERACODE:20675