Vulnerabilities > CVE-2021-3541 - XML Entity Expansion vulnerability in multiple products

047910
CVSS 6.5 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH

Summary

A flaw was found in libxml2. Exponential entity expansion attack its possible bypassing all existing protection mechanisms and leading to denial of service.

Vulnerable Configurations

Part Description Count
Application
Xmlsoft
172
Application
Redhat
1
Application
Oracle
1
Application
Netapp
8
OS
Netapp
8
Hardware
Netapp
8