CVE-2020-11885
17.04.2020, 20:15
WSO2 Enterprise Integrator through 6.6.0 has an XXE vulnerability where a user (with admin console access) can use the XML validator to make unintended network invocations such as SSRF via an uploaded file.Enginsight
Vendor | Product | Version |
---|---|---|
wso2 | enterprise_integrator | 𝑥 ≤ 6.6.0 |
𝑥
= Vulnerable software versions