Apache log4net versions before 2.0.10 do not disable XML external entities when parsing log4net configuration files. This allows for XXE-based attacks in applications that accept attacker-controlled log4net configuration files.
Apache log4net versiones anteriores a 2.0.10, no deshabilita las entidades externas XML cuando analiza los archivos de configuración de log4net. Esto permite realizar ataques basados en XXE en aplicaciones que aceptan archivos de configuración log4net controlados por el atacante
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
| Attack Vector | NETWORK |
|---|---|
| Attack Complexity | LOW |
| Privileges Required | NONE |
| User Interaction | NONE |
| Scope | UNCHANGED |
| Confidentiality Impact | HIGH |
| Integrity Impact | HIGH |
| Availability Impact | HIGH |
AV:N/AC:L/Au:N/C:P/I:P/A:P
| Access Vector | NETWORK |
|---|---|
| Access Complexity | LOW |
| Authentication | NONE |
| Confidentiality Impact | PARTIAL |
| Integrity Impact | PARTIAL |
| Availability Impact | PARTIAL |
| Source | Type | Description |
|---|---|---|
| [email protected] | Primary |
en
CWE-611
|
| Vendor | Product | Version | Update | Type |
|---|---|---|---|---|
| apache | log4net | * | <built-in method update of dict object at 0x7cfc0c2e4500> | Application |
| fedoraproject | fedora | 30 | <built-in method update of dict object at 0x7cfc1c5f10c0> | Operating System |
| fedoraproject | fedora | 31 | <built-in method update of dict object at 0x7cfc1c5f22c0> | Operating System |
| fedoraproject | fedora | 32 | <built-in method update of dict object at 0x7cfbf71dd540> | Operating System |
| oracle | application_testing_suite | 13.3.0.1 | <built-in method update of dict object at 0x7cfbf72c7fc0> | Application |
| oracle | hospitality_opera_5 | 5.5 | <built-in method update of dict object at 0x7cfbd4308a00> | Application |
| oracle | hospitality_opera_5 | 5.6 | <built-in method update of dict object at 0x7cfbd6220b80> | Application |
| oracle | hospitality_simphony | 18.2.7.2 | <built-in method update of dict object at 0x7cfc1cc2f700> | Application |
| oracle | hospitality_simphony | 19.1.3 | <built-in method update of dict object at 0x7cfbecbd4a40> | Application |
| netapp | manageability_software_development_kit | - | <built-in method update of dict object at 0x7cfbf72c5a80> | Application |
| netapp | snapcenter | - | <built-in method update of dict object at 0x7cfc1cb4b3c0> | Application |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:a:apache:log4net:*:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:fedoraproject:fedora:30:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:fedoraproject:fedora:31:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:a:oracle:application_testing_suite:13.3.0.1:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:oracle:hospitality_opera_5:5.5:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:oracle:hospitality_opera_5:5.6:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:oracle:hospitality_simphony:18.2.7.2:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:oracle:hospitality_simphony:19.1.3:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:a:netapp:manageability_software_development_kit:-:*:*:*:*:*:*:* |
| Yes | cpe:2.3:a:netapp:snapcenter:-:*:*:*:*:*:*:* |