Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
XML External Entity attack in mapfish-print
Vulnerability Description
In mapfish-print before version 3.24, a user can do to an XML External Entity (XXE) attack with the provided SDL style.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N
Vulnerability Type
XML外部实体引用的不恰当限制(XXE)
Vulnerability Title
mapfish-print 代码问题漏洞
Vulnerability Description
mapfish-print是个人开发者的一个创建与地图相关报告的JAVA扩展库。该扩展库基于Java的servlet /库/应用程序,可以实现接收请求至返回报告的服务。 mapfish-print 3.24之前版本存在安全漏洞,该漏洞源于用户可以做一个XML外部实体(XXE)攻击的SDL提供风格。
CVSS Information
N/A
Vulnerability Type
N/A