CVE-2018-17289

CVE-2018-17289

An XML external entity (XXE) vulnerability in Kofax Front Office Server Administration Console version 4.1.1.11.0.5212 allows remote authenticated users to read arbitrary files via crafted XML inside an imported package configuration (.ZIP file) within the Kofax/KFS/Admin/PackageService/package/upload file parameter.

Source: CVE-2018-17289

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다