|
|
| |
| Restlet Framework is prone to an information-disclosure vulnerability. This issue is vulnerable to XML External Entity attacks. |
| |
Credit:
The information has been provided by Nicolas Gracgoire .
The original article can be found at: http://www.securityfocus.com/bid/53713
|
| |
Vulnerable Systems:
* Restlet Restlet Framework 2.0.13
Immune Systems:
* Restlet Restlet Framework 2.1 RC5
* Restlet Restlet Framework 2.1 RC4
* Restlet Restlet Framework 2.0.14
An attackers can exploit this issue to gain access to sensitive information; this may lead to further attacks.
Vendor Status:
Vendor had issued an update for this vulnerability
Patch Availability:
http://blog.restlet.com/2012/05/23/restlet-framework-2-1-rc5-and-2-0-14-released/
Disclosure Timeline:
Initial Release: May 29 2012
|
|
blog comments powered by
|