XML External Entity (XXE) vulnerability in JobScheduler prior to 1.6.4246 and 7.x prior to 1.7.4241 allows remote malicious users to cause a denial of service and read arbitrary files or directories via a request containing an XML external entity declaration in conjunction with an entity reference.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sos jobscheduler 1.7.4189 |
||
sos jobscheduler 1.7.4177 |
||
sos jobscheduler 1.6.4014 |
||
sos jobscheduler 1.6.4043 |
||
sos jobscheduler |