Vulnerabilities > CVE-2017-1000498 - XXE vulnerability in Androidsvg Project Androidsvg 1.2.2
Attack vector
NETWORK Attack complexity
MEDIUM Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
AndroidSVG version 1.2.2 is vulnerable to XXE attacks in the SVG parsing component resulting in denial of service and possibly remote code execution
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |