CVE-2014-5035
26.08.2014, 14:55
The Netconf (TCP) service in OpenDaylight 1.0 allows remote attackers to read arbitrary files via an XML external entity declaration in conjunction with an entity reference in an XML-RPC message, related to an XML External Entity (XXE) issue.Enginsight
Vendor | Product | Version |
---|---|---|
opendaylight | opendaylight | 1.0 |
𝑥
= Vulnerable software versions
References