CVE-2019-20191

Oxygen XML Editor 21.1.1 allows XXE to read any file.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sync:oxygen_xml_editor:*:*:*:*:*:*:*:*
cpe:2.3:a:sync:oxygen_xml_author:*:*:*:*:*:*:*:*
cpe:2.3:a:sync:oxygen_xml_developer:*:*:*:*:*:*:*:*

History

07 Nov 2023, 03:08

Type Values Removed Values Added
References
  • {'url': 'https://medium.com/@Pablo0xSantiago/cve-2019-20191-oxygen-xml-editor-21-1-1-allows-xxe-216b816f312b', 'name': 'https://medium.com/@Pablo0xSantiago/cve-2019-20191-oxygen-xml-editor-21-1-1-allows-xxe-216b816f312b', 'tags': ['Exploit', 'Third Party Advisory'], 'refsource': 'MISC'}
  • () https://medium.com/%40Pablo0xSantiago/cve-2019-20191-oxygen-xml-editor-21-1-1-allows-xxe-216b816f312b -

Information

Published : 2020-03-16 22:15

Updated : 2023-11-07 03:08


NVD link : CVE-2019-20191

Mitre link : CVE-2019-20191


JSON object : View

Products Affected

sync

  • oxygen_xml_author
  • oxygen_xml_developer
  • oxygen_xml_editor
CWE
CWE-611

Improper Restriction of XML External Entity Reference