Vulnerabilities > CVE-2018-15805 - XXE vulnerability in Accusoft Prizmdoc
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
NONE Availability impact
HIGH Summary
Accusoft PrizmDoc HTML5 Document Viewer before 13.5 contains an XML external entity (XXE) vulnerability, allowing an attacker to read arbitrary files or cause a denial of service (resource consumption).
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 5 |