VYPR

Jboss Data Virtualization

by Red Hat

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2014-01710.000.00Jan 15, 2015XML external entity (XXE) vulnerability in StaxXMLFactoryProvider2 in Odata4j, as used in Red Hat JBoss Data Virtualization before 6.0.0 patch 4, allows remote attackers to read arbitrary files via a crafted request to a REST endpoint.
CVE-2014-01700.000.01Sep 30, 2014Teiid before 8.4.3 and before 8.7 and Red Hat JBoss Data Virtualization 6.0.0 before patch 3 allows remote attackers to read arbitrary files via a crafted request to a REST endpoint, related to an XML External Entity (XXE) issue.