← Back to CVE List

CVE-2016-5002

Published: 2017-10-27T18:29Z
Last Modified: 2024-11-21T02:53Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
XML external entity (XXE) vulnerability in the Apache XML-RPC (aka ws-xmlrpc) library 3.1.3, as used in Apache Archiva, allows remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted DTD. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt