CVE-2019-13990
26.07.2019, 19:15
initDocumentParser in xml/XMLSchedulingDataProcessor.java in Terracotta Quartz Scheduler through 2.3.0 allows XXE attacks via a job description.Enginsight
Vendor | Product | Version |
---|---|---|
softwareag | quartz | 𝑥 < 2.3.2 |
oracle | apache_batik_mapviewer | 12.2.0.1 |
oracle | banking_enterprise_originations | 2.7.0 |
oracle | banking_enterprise_originations | 2.8.0 |
oracle | banking_enterprise_product_manufacturing | 2.7.0 |
oracle | banking_enterprise_product_manufacturing | 2.8.0 |
oracle | banking_payments | 14.1.0 ≤ 𝑥 ≤ 14.4.0 |
oracle | communications_ip_service_activator | 7.3.0 |
oracle | communications_ip_service_activator | 7.4.0 |
oracle | communications_session_route_manager | 8.2.0 ≤ 𝑥 ≤ 8.2.2 |
oracle | customer_management_and_segmentation_foundation | 18.0 |
oracle | documaker | 12.6.0 ≤ 𝑥 ≤ 12.6.4 |
oracle | enterprise_manager_base_platform | 13.2.1.0 |
oracle | enterprise_manager_ops_center | 12.4.0.0 |
oracle | flexcube_investor_servicing | 12.1.0 |
oracle | flexcube_investor_servicing | 12.3.0 |
oracle | flexcube_investor_servicing | 12.4.0 |
oracle | flexcube_investor_servicing | 14.1.0 |
oracle | flexcube_investor_servicing | 14.4.0 |
oracle | flexcube_private_banking | 12.0.0 |
oracle | flexcube_private_banking | 12.1.0 |
oracle | fusion_middleware_mapviewer | 12.2.1.3.0 |
oracle | google_guava_mapviewer | 12.2.0.1 |
oracle | hyperion_infrastructure_technology | 11.1.2.4 |
oracle | jd_edwards_enterpriseone_orchestrator | 𝑥 ≤ 9.2.5.3 |
oracle | primavera_unifier | 17.7 ≤ 𝑥 ≤ 17.12 |
oracle | primavera_unifier | 16.1 |
oracle | primavera_unifier | 16.2 |
oracle | primavera_unifier | 18.8 |
oracle | retail_back_office | 14.1 |
oracle | retail_central_office | 14.1 |
oracle | retail_integration_bus | 15.0 |
oracle | retail_integration_bus | 16.0 |
oracle | retail_order_broker | 15.0 |
oracle | retail_order_broker | 16.0 |
oracle | retail_order_broker | 18.0 |
oracle | retail_order_broker | 19.0 |
oracle | retail_point-of-service | 14.1 |
oracle | retail_returns_management | 14.1 |
oracle | retail_xstore_point_of_service | 15.0 |
oracle | retail_xstore_point_of_service | 16.0 |
oracle | retail_xstore_point_of_service | 17.0 |
oracle | retail_xstore_point_of_service | 18.0 |
oracle | retail_xstore_point_of_service | 19.0 |
oracle | terracotta_quartz_scheduler_mapviewer | 12.2.0.1 |
oracle | webcenter_sites | 12.2.1.3.0 |
oracle | webcenter_sites | 12.2.1.4.0 |
apache | tomee | 7.1.3 |
netapp | active_iq_unified_manager | - |
netapp | active_iq_unified_manager | - |
netapp | active_iq_unified_manager | - |
netapp | cloud_secure_agent | - |
atlassian | jira_service_management | 4.20.0 |
atlassian | jira_service_management | 4.20.0 |
atlassian | jira_service_management | 4.20.1 |
atlassian | jira_service_management | 4.20.1 |
atlassian | jira_service_management | 4.20.2 |
atlassian | jira_service_management | 4.20.2 |
atlassian | jira_service_management | 4.20.3 |
atlassian | jira_service_management | 4.20.3 |
atlassian | jira_service_management | 4.20.4 |
atlassian | jira_service_management | 4.20.4 |
atlassian | jira_service_management | 4.20.5 |
atlassian | jira_service_management | 4.20.5 |
atlassian | jira_service_management | 4.20.6 |
atlassian | jira_service_management | 4.20.6 |
atlassian | jira_service_management | 4.20.7 |
atlassian | jira_service_management | 4.20.7 |
atlassian | jira_service_management | 4.20.8 |
atlassian | jira_service_management | 4.20.8 |
atlassian | jira_service_management | 4.20.9 |
atlassian | jira_service_management | 4.20.9 |
atlassian | jira_service_management | 4.20.10 |
atlassian | jira_service_management | 4.20.10 |
atlassian | jira_service_management | 4.20.11 |
atlassian | jira_service_management | 4.20.11 |
atlassian | jira_service_management | 4.20.12 |
atlassian | jira_service_management | 4.20.12 |
atlassian | jira_service_management | 4.20.13 |
atlassian | jira_service_management | 4.20.13 |
atlassian | jira_service_management | 4.20.14 |
atlassian | jira_service_management | 4.20.14 |
atlassian | jira_service_management | 4.20.15 |
atlassian | jira_service_management | 4.20.15 |
atlassian | jira_service_management | 4.20.16 |
atlassian | jira_service_management | 4.20.16 |
atlassian | jira_service_management | 4.20.17 |
atlassian | jira_service_management | 4.20.17 |
atlassian | jira_service_management | 4.20.18 |
atlassian | jira_service_management | 4.20.18 |
atlassian | jira_service_management | 4.20.19 |
atlassian | jira_service_management | 4.20.19 |
atlassian | jira_service_management | 4.20.20 |
atlassian | jira_service_management | 4.20.20 |
atlassian | jira_service_management | 4.20.21 |
atlassian | jira_service_management | 4.20.21 |
atlassian | jira_service_management | 4.20.22 |
atlassian | jira_service_management | 4.20.22 |
atlassian | jira_service_management | 4.20.23 |
atlassian | jira_service_management | 4.20.23 |
atlassian | jira_service_management | 4.20.24 |
atlassian | jira_service_management | 4.20.24 |
atlassian | jira_service_management | 4.20.25 |
atlassian | jira_service_management | 4.20.25 |
atlassian | jira_service_management | 4.21.0 |
atlassian | jira_service_management | 4.21.0 |
atlassian | jira_service_management | 4.21.1 |
atlassian | jira_service_management | 4.21.1 |
atlassian | jira_service_management | 4.22.0 |
atlassian | jira_service_management | 4.22.0 |
atlassian | jira_service_management | 4.22.1 |
atlassian | jira_service_management | 4.22.1 |
atlassian | jira_service_management | 4.22.2 |
atlassian | jira_service_management | 4.22.2 |
atlassian | jira_service_management | 4.22.3 |
atlassian | jira_service_management | 4.22.3 |
atlassian | jira_service_management | 4.22.4 |
atlassian | jira_service_management | 4.22.4 |
atlassian | jira_service_management | 4.22.6 |
atlassian | jira_service_management | 4.22.6 |
atlassian | jira_service_management | 5.0.0 |
atlassian | jira_service_management | 5.0.0 |
atlassian | jira_service_management | 5.1.0 |
atlassian | jira_service_management | 5.1.0 |
atlassian | jira_service_management | 5.1.1 |
atlassian | jira_service_management | 5.1.1 |
atlassian | jira_service_management | 5.2.0 |
atlassian | jira_service_management | 5.2.0 |
atlassian | jira_service_management | 5.2.1 |
atlassian | jira_service_management | 5.2.1 |
atlassian | jira_service_management | 5.3.0 |
atlassian | jira_service_management | 5.3.0 |
atlassian | jira_service_management | 5.3.1 |
atlassian | jira_service_management | 5.3.1 |
atlassian | jira_service_management | 5.3.2 |
atlassian | jira_service_management | 5.3.2 |
atlassian | jira_service_management | 5.3.3 |
atlassian | jira_service_management | 5.3.3 |
atlassian | jira_service_management | 5.4.0 |
atlassian | jira_service_management | 5.4.0 |
atlassian | jira_service_management | 5.4.1 |
atlassian | jira_service_management | 5.4.1 |
atlassian | jira_service_management | 5.4.2 |
atlassian | jira_service_management | 5.4.2 |
atlassian | jira_service_management | 5.4.3 |
atlassian | jira_service_management | 5.4.3 |
atlassian | jira_service_management | 5.4.4 |
atlassian | jira_service_management | 5.4.4 |
atlassian | jira_service_management | 5.4.5 |
atlassian | jira_service_management | 5.4.5 |
atlassian | jira_service_management | 5.4.6 |
atlassian | jira_service_management | 5.4.6 |
atlassian | jira_service_management | 5.4.7 |
atlassian | jira_service_management | 5.4.7 |
atlassian | jira_service_management | 5.4.8 |
atlassian | jira_service_management | 5.4.8 |
atlassian | jira_service_management | 5.4.9 |
atlassian | jira_service_management | 5.4.9 |
atlassian | jira_service_management | 5.5.1 |
atlassian | jira_service_management | 5.5.1 |
atlassian | jira_service_management | 5.6.0 |
atlassian | jira_service_management | 5.6.0 |
atlassian | jira_service_management | 5.7.0 |
atlassian | jira_service_management | 5.7.0 |
atlassian | jira_service_management | 5.7.1 |
atlassian | jira_service_management | 5.7.1 |
atlassian | jira_service_management | 5.8.0 |
atlassian | jira_service_management | 5.8.0 |
atlassian | jira_service_management | 5.8.1 |
atlassian | jira_service_management | 5.8.1 |
atlassian | jira_service_management | 5.9.0 |
atlassian | jira_service_management | 5.9.0 |
atlassian | jira_service_management | 5.10.0 |
atlassian | jira_service_management | 5.10.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
libquartz-java |
| ||||||||||||||||||||||||||||
libquartz2-java |
|
References