9.8
CVSSv3

CVE-2014-3630

Published: 29/12/2017 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

XML external entity (XXE) vulnerability in the Java XML processing functionality in Play prior to 2.2.6 and 2.3.x prior to 2.3.5 might allow remote malicious users to read arbitrary files, cause a denial of service, or have unspecified other impact via crafted XML data.

Vulnerable Product Search on Vulmon Subscribe to Product

playframework play framework 2.2.5

playframework play framework 2.2.4

playframework play framework 2.2.3

playframework play framework 2.2.2

playframework play framework 2.2.1

playframework play framework 2.2.0

lightbend play framework 2.2.0

lightbend play framework 2.2.1

lightbend play framework 2.2.2

lightbend play framework 2.3.0

lightbend play framework 2.3.1

lightbend play framework 2.3.2

lightbend play framework 2.3.3

lightbend play framework 2.3.4