Vulnerabilities > CVE-2018-5758 - XXE vulnerability in Aurea Jive-N 9.0.2.1
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
The Upload File functionality in upload.jspa in Aurea Jive Jive-n 9.0.2.1 On-Premises allows for an XML External Entity attack through a crafted file, allowing attackers to read arbitrary files.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |