CVE-2020-11885

Publication date

2020-04-17 19:14:03

Family

mitre

State

PUBLISHED

Description

WSO2 Enterprise Integrator through 6.6.0 has an XXE vulnerability where a user (with admin console access) can use the XML validator to make unintended network invocations such as SSRF via an uploaded file.