logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2018-1000632

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2018-1000632

Description:
dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.
Last updated date:
09/07/2021
Type:
exploit
Confidence:
HIGH
Date of publishing:
09/07/2021
Reference url to background

https://ihacktoprotect.com/post/dom4j-xml-injection/

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2025

Privacy Policy