The XML parser, which is being used by SAP Enable Now, before version 1902, has not been hardened correctly, leading to Missing XML Validation vulnerability. This issue affects the file upload at multiple locations. An attacker can read local XXE files.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: sap
Published: 2019-08-14T13:51:45
Updated: 2024-08-04T17:44:16.515Z
Reserved: 2018-11-26T00:00:00
Link: CVE-2019-0340
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-08-14T14:15:16.260
Modified: 2024-11-21T04:16:42.640
Link: CVE-2019-0340
Redhat
No data.