Vulnerabilities > Igniterealtime > User Import Export > 2.6.0

DATE CVE VULNERABILITY TITLE RISK
2018-05-15 CVE-2017-2815 XXE vulnerability in Igniterealtime User Import Export 2.6.0
An exploitable XML entity injection vulnerability exists in OpenFire User Import Export Plugin 2.6.0.
network
low complexity
igniterealtime CWE-611
5.5