Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2015-0250
Description:XML external entity (XXE) vulnerability in the SVG to (1) PNG and (2) JPG conversion classes in Apache Batik 1.x before 1.8 allows remote attackers to read arbitrary files or cause a denial of service via a crafted SVG file.
Test IDs: 1.3.6.1.4.1.25623.1.0.869429   1.3.6.1.4.1.25623.1.1.1.2.2015.182   1.3.6.1.4.1.25623.1.0.869663   1.3.6.1.4.1.25623.1.0.703205   1.3.6.1.4.1.25623.1.1.10.2015.0138   1.3.6.1.4.1.25623.1.0.842148   1.3.6.1.4.1.25623.1.0.869389  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2015-0250
Debian Security Information: DSA-3205 (Google Search)
http://www.debian.org/security/2015/dsa-3205
http://seclists.org/fulldisclosure/2015/Mar/142
http://www.mandriva.com/security/advisories?name=MDVSA-2015:203
http://packetstormsecurity.com/files/130964/Apache-Batik-XXE-Injection.html
RedHat Security Advisories: RHSA-2016:0041
http://rhn.redhat.com/errata/RHSA-2016-0041.html
RedHat Security Advisories: RHSA-2016:0042
http://rhn.redhat.com/errata/RHSA-2016-0042.html
http://www.securitytracker.com/id/1032781
http://www.ubuntu.com/usn/USN-2548-1




© 1998-2025 E-Soft Inc. All rights reserved.