ZeroHour

CVE-2018-17186

CVSS 3.0
7.2 high
EPSS
2%p83
Published
()
Modified
Description

An administrator with workflow definition entitlements can use DTD to perform malicious operations, including but not limited to file read, file write, and code execution.

Vendors
apache
Products
syncope
Weakness
CWE-611
Vector
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.