Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Sonatype Nexus Repository Manager 3.x before 3.29.0 allows a user with admin privileges to configure the system to gain access to content outside of NXRM via an XXE vulnerability. Fixed in version 3.29.0.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sonatype Nexus Repository Manager 代码问题漏洞
Vulnerability Description
Sonatype Nexus Repository Manager(NXRM)是美国Sonatype公司的一款存储库管理器,它主要用于管理、存储和分发软件等。 Sonatype Nexus Repository Manager 存在安全漏洞,攻击者可利用该漏洞可以向发送恶意XML数据,以读取文件、扫描站点或触发拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A