Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Restlet Framework 2.1.x before 2.1.7 and 2.x.x before 2.2 RC1, when using XMLRepresentation or XML serializers, allows attackers to cause a denial of service via an XML Entity Expansion (XEE) attack.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Restlet Framework 安全漏洞
Vulnerability Description
Restlet Framework是美国Restlet公司的一个轻量级的REST框架。该框架能够将Web站点和Web服务组装到一个统一的Web应用程序中。 Restlet Framework 2.1.7之前2.1.x版本和2.2 milestone6及之前版本中存在安全漏洞,该漏洞源于程序解析与XMLRepresentation或XML序列化相关的XML实体时存在错误。攻击者可利用该漏洞造成拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A