CVE-2018-10868
EUVD-2018-293426.05.2021, 19:15
redhat-certification 7 does not properly restrict the number of recursive definitions of entities in XML documents, allowing an unauthenticated user to run a "Billion Laugh Attack" by replying to XMLRPC methods when getting the status of an host.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| redhat | certification | 7.0 |
𝑥
= Vulnerable software versions