Vulnerabilities > CVE-2017-6055 - XXE vulnerability in Eparaksts Eparakstitajs 3 1.3.0/1.3.8

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
eparaksts
CWE-611

Summary

XML external entity (XXE) vulnerability in eParakstitajs 3 before 1.3.9 and eParaksts Java lib before 2.5.13 allows remote attackers to read arbitrary files or possibly have unspecified other impact via a crafted edoc file.

Vulnerable Configurations

Part Description Count
Application
Eparaksts
2