CVE-2018-2401

SAP Business Process Automation (BPA) By Redwood does not sufficiently validate an XML document accepted from an untrusted source resulting in an XML External Entity (XXE) vulnerability.
Configurations

Configuration 1

cpe:2.3:a:redwood:sap_business_process_automation:9.00:*:*:*:*:*:*:*

Information

Published : 2018-03-14 07:29

Updated : 2019-10-09 11:40


NVD link : CVE-2018-2401

Mitre link : CVE-2018-2401

Products Affected
No products.
CWE
CWE-611

Improper Restriction of XML External Entity Reference