logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2020-7032

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2020-7032

Description:
An XML external entity (XXE) vulnerability in Avaya WebLM admin interface allows authenticated users to read arbitrary files or conduct server-side request forgery (SSRF) attacks via a crafted DTD in an XML request. Affected versions of Avaya WebLM include: 7.0 through 7.1.3.6 and 8.0 through 8.1.2.
Last updated date:
10/19/2022
Type:
exploit
Confidence:
HIGH
Date of publishing:
01/12/2021
Reference url to background

http://packetstormsecurity.com/files/160123/Avaya-Web-License-Manager-XML-Injection.html

Type:
exploit
Confidence:
HIGH
Date of publishing:
01/12/2021
Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy