ZeroHour

CVE-2017-1000498

CVSS 3.1
7.8 high
EPSS
2%p74
Published
()
Modified
Description

AndroidSVG version 1.2.2 is vulnerable to XXE attacks in the SVG parsing component resulting in denial of service and possibly remote code execution

Vendors
androidsvg project
Products
androidsvg
Weakness
CWE-611
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.