CVE-2014-1868
06.10.2014, 23:55
Restlet Framework 2.1.x before 2.1.7 and 2.x.x before 2.2 RC1, when using XMLRepresentation or XML serializers, allows attackers to cause a denial of service via an XML Entity Expansion (XEE) attack.Enginsight
Vendor | Product | Version |
---|---|---|
restlet | restlet_framework | 𝑥 ≤ 2.2 |
restlet | restlet_framework | 2.1.0 |
restlet | restlet_framework | 2.1.1 |
restlet | restlet_framework | 2.1.2 |
restlet | restlet_framework | 2.1.3 |
restlet | restlet_framework | 2.1.4 |
restlet | restlet_framework | 2.1.5 |
restlet | restlet_framework | 2.1.6 |
restlet | restlet_framework | 2.2:milestone1 |
restlet | restlet_framework | 2.2:milestone2 |
restlet | restlet_framework | 2.2:milestone3 |
restlet | restlet_framework | 2.2:milestone4 |
restlet | restlet_framework | 2.2:milestone5 |
𝑥
= Vulnerable software versions

Ubuntu Releases
References