Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:3094
HistoryDec 08, 2016 - 5:23 a.m.

Bypass XML Signature Protection Mechanism

2016-12-0805:23:44
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

0.002 Low

EPSS

Percentile

60.1%

Apache Santuario XML Security is vulnerable to bypass attacks. Apache Santuario XML Security for Java 2.0.x before 2.0.3 allows malicious users to remotely bypass the streaming XML signature protection mechanism. It does not affect versions 1.4.x or 1.5.x.

CPENameOperatorVersion
apache xml security for javale2.0.2

0.002 Low

EPSS

Percentile

60.1%