Vulnerabilities > Esigate

DATE CVE VULNERABILITY TITLE RISK
2018-12-20 CVE-2018-1000854 Injection vulnerability in Esigate
esigate.org esigate version 5.2 and earlier contains a CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in ESI directive with user specified XSLT that can result in Remote Code Execution.
network
low complexity
esigate CWE-74
critical
9.8