PoC Index

CVE-2015-1833

MEDIUM 6.4EPSS 51.5%

XML external entity (XXE) vulnerability in Apache Jackrabbit before 2.0.6, 2.2.x before 2.2.14, 2.4.x before 2.4.6, 2.6.x before 2.6.6, 2.8.x before 2.8.1, and 2.10.x before 2.10.1 allows remote attackers to read arbitrary files and send requests to intranet servers via a crafted WebDAV request.

CVSS v2.0
6.4 MEDIUMAV:N/AC:L/Au:N/C:P/I:P/A:N
EPSS
51.49% chance of exploitation in the next 30 days, 99th percentile
Published
2015-05-29
Updated
2024-08-06

ExploitDB entries (1)

References

Related