Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:5803
HistoryFeb 12, 2018 - 7:58 a.m.

XML External Entities (XXE)

2018-02-1207:58:06
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
3

0.001 Low

EPSS

Percentile

45.1%

Apache jUDDI is vulnerable to XML External Entity expansion (XXE) attacks. The application does not disable Document Type Definition resolutions, allowing attackers to access sensitive information or conduct XXE attacks that can lead to a denial of service.

0.001 Low

EPSS

Percentile

45.1%