XML External Entity (XXE) Vulnerability in Java XML Processing in Play Framework

XML External Entity (XXE) Vulnerability in Java XML Processing in Play Framework

CVE-2014-3630 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

XML external entity (XXE) vulnerability in the Java XML processing functionality in Play before 2.2.6 and 2.3.x before 2.3.5 might allow remote attackers to read arbitrary files, cause a denial of service, or have unspecified other impact via crafted XML data.

Learn more about our External Network Penetration Testing.