CVE-2020-6958

An XXE vulnerability in JnlpSupport in Yet Another Java Service Wrapper (YAJSW) 12.14, as used in NSA Ghidra and other products, allows attackers to exfiltrate data from remote hosts and potentially cause denial-of-service.
Configurations

Configuration 1

cpe:2.3:a:yet_another_java_service_wrapper_project:yet_another_java_service_wrapper:12.14:*:*:*:*:*:*:*

Information

Published : 2020-01-14 12:15

Updated : 2020-01-21 04:08


NVD link : CVE-2020-6958

Mitre link : CVE-2020-6958

Products Affected
No products.
CWE
CWE-611

Improper Restriction of XML External Entity Reference