oxf/xml/xerces/XercesSAXParserFactoryImpl.java in the xforms-server component in the XForms service in Orbeon Forms prior to 3.9 does not properly restrict DTDs in Ajax requests, which allows remote malicious users to read arbitrary files or send HTTP requests to intranet servers via an entity declaration in conjunction with an entity reference, related to an "XML injection" issue.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
orbeon forms 3.7.1 |
||
orbeon forms 3.6 |
||
orbeon forms 3.5 |
||
orbeon forms 3.0 |
||
orbeon forms 2.2 |
||
orbeon forms 2.1 |
||
orbeon forms 2.0 |
||
orbeon forms 1.5 |
||
orbeon forms 3.8 |
||
orbeon forms 2.8 |
||
orbeon forms 2.6 |
||
orbeon forms |
||
orbeon forms 2.7 |
||
orbeon forms 2.5 |