ZeroHour

CVE-2020-24589

CVSS 3.1
9.1 critical
EPSS
26%p98
Published
()
Modified
Description

The Management Console in WSO2 API Manager through 3.1.0 and API Microgateway 2.2.0 allows XML External Entity injection (XXE) attacks.

Vendors
wso2
Products
api manager, api microgateway
Weakness
CWE-611
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H

In the news

No ingested article mentions this CVE yet.