Description
SAS XML Mapper 9.45 has an XML External Entity (XXE) vulnerability that can be leveraged by malicious attackers in multiple ways. Examples are Local File Reading, Out Of Band File Exfiltration, Server Side Request Forgery, and/or Potential Denial of Service attacks. This vulnerability also affects the XMLV2 LIBNAME engine when the AUTOMAP option is used.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-5829 | SAS XML Mapper 9.45 has an XML External Entity (XXE) vulnerability that can be leveraged by malicious attackers in multiple ways. Examples are Local File Reading, Out Of Band File Exfiltration, Server Side Request Forgery, and/or Potential Denial of Service attacks. This vulnerability also affects the XMLV2 LIBNAME engine when the AUTOMAP option is used. |
References
History
No history.
Subscriptions
Hp
Subscribe
Hp-ux
Subscribe
Ibm
Subscribe
Aix
Subscribe
Z\/os
Subscribe
Linux
Subscribe
Linux Kernel
Subscribe
Microsoft
Subscribe
Windows
Subscribe
Windows 10
Subscribe
Windows 7
Subscribe
Windows 8
Subscribe
Windows 8.1
Subscribe
Windows Server 2012
Subscribe
Windows Server 2016
Subscribe
Windows Server 2019
Subscribe
Oracle
Subscribe
Solaris
Subscribe
Sas
Subscribe
Base Sas
Subscribe
Xml Mapper
Subscribe
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T00:19:41.422Z
Reserved: 2019-08-05T00:00:00.000Z
Link: CVE-2019-14678
No data.
Status : Modified
Published: 2019-11-14T21:15:11.357
Modified: 2024-11-21T04:27:07.170
Link: CVE-2019-14678
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD