CVE-2018-12544
vertx: API Validation XML Schemas do not forbid file system access
Severity Score
9.8
*CVSS v3
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
In version from 3.5.Beta1 to 3.5.3 of Eclipse Vert.x, the OpenAPI XML type validator creates XML parsers without taking appropriate defense against XML attacks. This mechanism is exclusively when the developer uses the Eclipse Vert.x OpenAPI XML type validator to validate a provided schema.
De la versiĆ³n 3.5.Beta1 a la 3.5.3 de Eclipse Vert.x, el validador de tipos XML OpenAPI crea analizadores XML sin las medidas defensivas adecuadas contra ataques XML. Este mecanismo es exclusivo a cuando el desarrollador emplea el validador de tipos XML OpenAPI de Eclipse Vert.x para validar un esquema proporcionado.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2018-06-18 CVE Reserved
- 2018-10-10 CVE Published
- 2024-07-25 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-611: Improper Restriction of XML External Entity Reference
CAPEC
References (6)
URL | Tag | Source |
---|---|---|
https://lists.apache.org/thread.html/rd0e44e8ef71eeaaa3cf3d1b8b41eb25894372e2995ec908ce7624d26%40%3Ccommits.pulsar.apache.org%3E | Mailing List |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://bugs.eclipse.org/bugs/show_bug.cgi?id=539568 | 2023-11-07 | |
https://github.com/vert-x3/vertx-web/issues/1021 | 2023-11-07 |
URL | Date | SRC |
---|---|---|
https://access.redhat.com/errata/RHSA-2018:2946 | 2023-11-07 | |
https://access.redhat.com/security/cve/CVE-2018-12544 | 2018-10-18 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1638384 | 2018-10-18 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Eclipse Search vendor "Eclipse" | Vert.x Search vendor "Eclipse" for product "Vert.x" | 3.5.0 Search vendor "Eclipse" for product "Vert.x" and version "3.5.0" | - |
Affected
| ||||||
Eclipse Search vendor "Eclipse" | Vert.x Search vendor "Eclipse" for product "Vert.x" | 3.5.0 Search vendor "Eclipse" for product "Vert.x" and version "3.5.0" | beta1 |
Affected
| ||||||
Eclipse Search vendor "Eclipse" | Vert.x Search vendor "Eclipse" for product "Vert.x" | 3.5.1 Search vendor "Eclipse" for product "Vert.x" and version "3.5.1" | - |
Affected
| ||||||
Eclipse Search vendor "Eclipse" | Vert.x Search vendor "Eclipse" for product "Vert.x" | 3.5.2 Search vendor "Eclipse" for product "Vert.x" and version "3.5.2" | - |
Affected
| ||||||
Eclipse Search vendor "Eclipse" | Vert.x Search vendor "Eclipse" for product "Vert.x" | 3.5.2 Search vendor "Eclipse" for product "Vert.x" and version "3.5.2" | cr1 |
Affected
| ||||||
Eclipse Search vendor "Eclipse" | Vert.x Search vendor "Eclipse" for product "Vert.x" | 3.5.2 Search vendor "Eclipse" for product "Vert.x" and version "3.5.2" | cr2 |
Affected
| ||||||
Eclipse Search vendor "Eclipse" | Vert.x Search vendor "Eclipse" for product "Vert.x" | 3.5.2 Search vendor "Eclipse" for product "Vert.x" and version "3.5.2" | cr3 |
Affected
| ||||||
Eclipse Search vendor "Eclipse" | Vert.x Search vendor "Eclipse" for product "Vert.x" | 3.5.3 Search vendor "Eclipse" for product "Vert.x" and version "3.5.3" | - |
Affected
| ||||||
Eclipse Search vendor "Eclipse" | Vert.x Search vendor "Eclipse" for product "Vert.x" | 3.5.3 Search vendor "Eclipse" for product "Vert.x" and version "3.5.3" | cr1 |
Affected
|