CVE-2012-0818
CVE-2012-0818
RESTEasy before 2.3.1 allows remote attackers to read arbitrary files via an external entity reference in a DOM document, aka an XML external entity (XXE) injection attack.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://rhn.redhat.com/errata/RHSA-2012-0441.htmlhttp://rhn.redhat.com/errata/RHSA-2012-0519.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1056.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1057.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1058.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1059.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1125.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0371.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0372.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=785631http://secunia.com/advisories/47818http://secunia.com/advisories/47832