Security Advisory

CVE-2020-11885

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-04-17 19:14:03
Last updated 2024-08-04 11:42:00
Assigner mitre
State PUBLISHED

Description

WSO2 Enterprise Integrator through 6.6.0 has an XXE vulnerability where a user (with admin console access) can use the XML validator to make unintended network invocations such as SSRF via an uploaded file.