CVE-2020-11885
WSO2 Enterprise Integrator through 6.6.0 has an XXE vulnerability where a user (with admin console access) can use the X
WSO2 Enterprise Integrator through 6.6.0 has an XXE vulnerability where a user (with admin console access) can use the XML validator to make unintended network invocations such as SSRF via an uploaded file.
HIGH · CVSS 7.2
EPSS 0.00394
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0