CVE-2015-1818
11.08.2015, 14:59
XML external entity (XXE) vulnerability in the dashbuilder import facility (DocumentBuilders in org.jboss.dashboard.export.ImportManagerImpl) in Red Hat JBoss BPM Suite before 6.1.2 allows remote attackers to read arbitrary files, conduct server-side request forgery (SSRF) attacks, and have other unspecified impact via a crafted XML document.Enginsight
Vendor | Product | Version |
---|---|---|
redhat | jboss_bpm_suite | 𝑥 ≤ 6.1.0 |
𝑥
= Vulnerable software versions