Security Advisory

CVE-2017-17762

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-08-29 19:00:00
Last updated 2024-08-05 20:59:17
Assigner mitre
State PUBLISHED

Description

XML external entity (XXE) vulnerability in Episerver 7 patch 4 and earlier allows remote attackers to read arbitrary files via a crafted DTD in an XML request involving util/xmlrpc/Handler.ashx.