ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-14478”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-14478
Published
2022-02-24
CVSS:
7.1
ShadowTrackr CVSS:
2.0
Summary:
A local, authenticated attacker could use an XML External Entity (XXE) attack to exploit weakly configured XML files to access local or remote content. A successful exploit could potentially cause a denial-of-service condition and allow the attacker to arbitrarily read any local file via system-level services.