ZeroHour

CVE-2017-1000061

CVSS 3.0
7.1 high
EPSS
1%p70
Published
()
Modified
Description

xmlsec 1.2.23 and before is vulnerable to XML External Entity Expansion when parsing crafted input documents, resulting in possible information disclosure or denial of service

Vendors
xmlsec project
Products
xmlsec
Weakness
CWE-611
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H

In the news

No ingested article mentions this CVE yet.