Beveiligingsadvies

CVE-2019-5427

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2019-04-22 20:52:56
Laatst bijgewerkt 2024-08-04 19:54:53
Toegewezen door hackerone
CVSS-score geen score
Status PUBLISHED

Beschrijving

c3p0 version < 0.9.5.4 may be exploited by a billion laughs attack when loading XML configuration due to missing protections against recursive entity expansion when loading configuration.