CVE-2017-14868
30.11.2017, 18:29
Restlet Framework before 2.3.11, when using SimpleXMLProvider, allows remote attackers to access arbitrary files via an XXE attack in a REST API HTTP request. This affects use of the Jax-rs extension.Enginsight
| Vendor | Product | Version |
|---|---|---|
| restlet | restlet | 𝑥 < 2.3.11 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References