Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
XMPCore in Adobe XMP Toolkit for Java before 5.1.3 allows remote attackers to read arbitrary files via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Adobe XMP Toolkit for Java 信息泄露漏洞
Vulnerability Description
Adobe XMP Toolkit for Java美国奥多比(Adobe)公司的一套用于在Java文件创建过程中嵌入到元数据文件中的工具。XMPCore是其中的一个核心组件。 Adobe XMP Toolkit for Java 5.1.2及之前版本中的XMPCore存在信息泄露漏洞。远程攻击者可借助包含外部实体声明和实体引用的XML数据利用该漏洞读取任意文件。
CVSS Information
N/A
Vulnerability Type
N/A