← Back

CVE-2017-1000061

nvd nist
Published: Jul 17, 2017Modified: May 13, 2026

JSON object

Loading...
7.1
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H
Exploitability: 1.8 / Impact: 5.2
Source: NVD

Description

xmlsec 1.2.23 and before is vulnerable to XML External Entity Expansion when parsing crafted input documents, resulting in possible information disclosure or denial of service

Affected (1)

Xmlsec
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 1.2.23

Timeline

No history available yet.