RSS   Vulnerabilities for 'Restlet framework'   RSS

2014-10-06
 
CVE-2014-1868

CWE-Other
 

 
Restlet Framework 2.1.x before 2.1.7 and 2.x.x before 2.2 RC1, when using XMLRepresentation or XML serializers, allows attackers to cause a denial of service via an XML Entity Expansion (XEE) attack.

 

 >>> Vendor: Restlet 2 Products
Restlet
Restlet framework


Copyright 2024, cxsecurity.com

 

Back to Top