CVE-2018-17186
06.11.2018, 20:29
An administrator with workflow definition entitlements can use DTD to perform malicious operations, including but not limited to file read, file write, and code execution.Enginsight
Vendor | Product | Version |
---|---|---|
apache | syncope | 2.0.0 ≤ 𝑥 ≤ 2.0.11 |
apache | syncope | 2.1.0 ≤ 𝑥 ≤ 2.1.2 |
𝑥
= Vulnerable software versions