VYPR
Unrated severityNVD Advisory· Published Dec 31, 2004· Updated Apr 16, 2026

CVE-2004-2415

CVE-2004-2415

Description

Davenport before 0.9.10 allows attackers to cause a denial of service (resource consumption) via (1) a very large XML file or (2) entity expansion attacks.

Affected products

7
  • cpe:2.3:a:davenport:davenport:0.8.0:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:a:davenport:davenport:0.8.0:*:*:*:*:*:*:*
    • cpe:2.3:a:davenport:davenport:0.9.0:*:*:*:*:*:*:*
    • cpe:2.3:a:davenport:davenport:0.9.5:*:*:*:*:*:*:*
    • cpe:2.3:a:davenport:davenport:0.9.6:*:*:*:*:*:*:*
    • cpe:2.3:a:davenport:davenport:0.9.7:*:*:*:*:*:*:*
    • cpe:2.3:a:davenport:davenport:0.9.8:*:*:*:*:*:*:*
    • cpe:2.3:a:davenport:davenport:0.9.9:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

7

News mentions

0

No linked articles in our index yet.