4.3
CVE-2013-4517
- EPSS 10.36%
- Veröffentlicht 11.01.2014 01:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle secalert@redhat.com
- Teams Watchlist Login
- Unerledigt Login
Apache Santuario XML Security for Java before 1.5.6, when applying Transforms, allows remote attackers to cause a denial of service (memory consumption) via crafted Document Type Definitions (DTDs), related to signatures.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Apache ≫ Santuario Xml Security For Java Version <= 1.5.5
Apache ≫ Santuario Xml Security For Java Version1.2.0
Apache ≫ Santuario Xml Security For Java Version1.2.1
Apache ≫ Santuario Xml Security For Java Version1.3.0
Apache ≫ Santuario Xml Security For Java Version1.4.0
Apache ≫ Santuario Xml Security For Java Version1.4.1
Apache ≫ Santuario Xml Security For Java Version1.4.2
Apache ≫ Santuario Xml Security For Java Version1.4.3
Apache ≫ Santuario Xml Security For Java Version1.4.4
Apache ≫ Santuario Xml Security For Java Version1.4.5
Apache ≫ Santuario Xml Security For Java Version1.4.6
Apache ≫ Santuario Xml Security For Java Version1.4.7
Apache ≫ Santuario Xml Security For Java Version1.4.8
Apache ≫ Santuario Xml Security For Java Version1.5.0
Apache ≫ Santuario Xml Security For Java Version1.5.1
Apache ≫ Santuario Xml Security For Java Version1.5.2
Apache ≫ Santuario Xml Security For Java Version1.5.3
Apache ≫ Santuario Xml Security For Java Version1.5.4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 10.36% | 0.929 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:N/A:P
|