Vulnerabilities > Wso2 > Enterprise Integrator > 6.2.0

DATE CVE VULNERABILITY TITLE RISK
2020-04-17 CVE-2020-11885 Server-Side Request Forgery (SSRF) vulnerability in Wso2 Enterprise Integrator
WSO2 Enterprise Integrator through 6.6.0 has an XXE vulnerability where a user (with admin console access) can use the XML validator to make unintended network invocations such as SSRF via an uploaded file.
network
low complexity
wso2 CWE-918
7.2