Vigilance.fr - Apache SOAP: external XML entity injection via RPCRouterServlet, analyzed on 22/12/2023
February 2024 by Vigilance.fr
An attacker can transmit malicious XML data to Apache SOAP, via RPCRouterServlet, in order to read a file, scan sites, or trigger a denial of service.
Plus d'information sur : https://vigilance.fr/vulnerability/Apache-SOAP-external-XML-entity-injection-via-RPCRouterServlet-43170