Unrated severityNVD Advisory· Published Sep 11, 2020· Updated Aug 4, 2024
CVE-2020-11991
CVE-2020-11991
Description
When using the StreamGenerator, the code parse a user-provided XML. A specially crafted XML, including external system entities, could be used to access any file on the server system.
Affected products
1Patches
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.