CVE-2015-1833

EPSS 31.0%

jackrabbit - security update

發布日:2022/5/14修改日:2026/4/28

描述

XML external entity (XXE) vulnerability in Apache Jackrabbit before 2.0.6, 2.2.x before 2.2.14, 2.4.x before 2.4.6, 2.6.x before 2.6.6, 2.8.x before 2.8.1, and 2.10.x before 2.10.1 allows remote attackers to read arbitrary files and send requests to intranet servers via a crafted WebDAV request.

受影響套件(3)

參考連結(16)