Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
XML External Entity (XXE) vulnerability in JobScheduler before 1.6.4246 and 7.x before 1.7.4241 allows remote attackers to cause a denial of service and read arbitrary files or directories via a request containing an XML external entity declaration in conjunction with an entity reference.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SOS JobScheduler XML外部实体漏洞
Vulnerability Description
SOS JobScheduler是Software- und Organisations-Service(SOS)公司的一套自动化的工作负载工具。JobScheduler Operations Center(JOC)是其中的一个JobScheduler操作中心。 SOS JobScheduler 1.6.4246之前版本和1.7.4241之前7.x版本中存在XML外部实体漏洞。远程攻击者可通过发送带有XML外部实体声明和实体引用的请求利用该漏洞造成拒绝服务,读取任意文件或目录。
CVSS Information
N/A
Vulnerability Type
N/A