ZeroHour

CVE-2017-8315

PoC
CVSS 3.0
7.5 high
EPSS
2%p75
Published
()
Modified
Description

Eclipse XML parser for the Eclipse IDE versions 2017.2.5 and earlier was found vulnerable to an XML External Entity attack. An attacker can exploit the vulnerability by implementing malicious code on Androidmanifest.xml.

Vendors
eclipse
Products
ide
Weakness
CWE-611
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.