CVE-2018-1000835
20.12.2018, 15:29
KeePassDX version <= 2.5.0.0beta17 contains a XML External Entity (XXE) vulnerability in kdbx file parser that can result in Disclosure of confidential data, denial of service, SSRF, port scanning.Enginsight
Vendor | Product | Version |
---|---|---|
keepassdx | keepass_dx | 2.5.0.0:beta1 |
keepassdx | keepass_dx | 2.5.0.0:beta10 |
keepassdx | keepass_dx | 2.5.0.0:beta11 |
keepassdx | keepass_dx | 2.5.0.0:beta12 |
keepassdx | keepass_dx | 2.5.0.0:beta13 |
keepassdx | keepass_dx | 2.5.0.0:beta14 |
keepassdx | keepass_dx | 2.5.0.0:beta15 |
keepassdx | keepass_dx | 2.5.0.0:beta16 |
keepassdx | keepass_dx | 2.5.0.0:beta17 |
keepassdx | keepass_dx | 2.5.0.0:beta2 |
keepassdx | keepass_dx | 2.5.0.0:beta3 |
keepassdx | keepass_dx | 2.5.0.0:beta4 |
keepassdx | keepass_dx | 2.5.0.0:beta5 |
keepassdx | keepass_dx | 2.5.0.0:beta6 |
keepassdx | keepass_dx | 2.5.0.0:beta7 |
keepassdx | keepass_dx | 2.5.0.0:beta8 |
keepassdx | keepass_dx | 2.5.0.0:beta9 |
𝑥
= Vulnerable software versions