Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The OpenID client application in Atlassian Crowd before version 3.6.2, and from version 3.7.0 before 3.7.1 allows remote attackers to perform a Denial of Service attack via an XML Entity Expansion vulnerability.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Atlassian Crowd 安全漏洞
Vulnerability Description
Atlassian Crowd是澳大利亚Atlassian公司的一套基于Web的单点登录系统。该系统为多用户、网络应用程序和目录服务器提供验证、授权等功能。 Atlassian Crowd 3.6.2之前版本和3.7.0至3.7.1版本中的OpenID客户端存在安全漏洞。攻击者可借助特制的URL利用该漏洞造成拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A