An XXE vulnerability in JnlpSupport in Yet Another Java Service Wrapper (YAJSW) 12.14, as used in NSA Ghidra and other products, allows attackers to exfiltrate data from remote hosts and potentially cause denial-of-service.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-01-13T23:07:35
Updated: 2024-08-04T09:18:01.687Z
Reserved: 2020-01-13T00:00:00
Link: CVE-2020-6958
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-01-14T00:15:11.410
Modified: 2024-11-21T05:36:23.247
Link: CVE-2020-6958
Redhat
No data.