CVE-2019-0188

7.5HIGH

Apache Camel prior to 2.24.0 contains an XML external entity injection (XXE) vulnerability (CWE-611) due to using an outdated vulnerable JSON-lib library. This affects only the camel-xmljson component

公開日: 5/28/2019更新日: 11/21/2024

説明

Apache Camel prior to 2.24.0 contains an XML external entity injection (XXE) vulnerability (CWE-611) due to using an outdated vulnerable JSON-lib library. This affects only the camel-xmljson component, which was removed.

AI分析AIによる分析

影響を受ける製品

apachecamel
oracleenterprise_data_quality
11.1.1.9.0
oracleenterprise_manager_base_platform
13.3.0.0
oracleenterprise_manager_base_platform
13.4.0.0
oracleflexcube_private_banking
12.0.0
oracleflexcube_private_banking
12.1.0
oracleenterprise_repository
12.1.3.0.0

参照