CVE-2012-0818
published 2012-11-23CVE-2012-0818: RESTEasy before 2.3.1 allows remote attackers to read arbitrary files via an external entity reference in a DOM document, aka an XML external entity (XXE)…
PriorityP434medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
3.21%
86.8th percentile
RESTEasy before 2.3.1 allows remote attackers to read arbitrary files via an external entity reference in a DOM document, aka an XML external entity (XXE) injection attack.
Affected
19 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | jboss_enterprise_application_platform | — | — |
| redhat | resteasy | <= 2.3.1 | — |
| redhat | resteasy | <= 2.3.0 | — |
| redhat | resteasy | — | — |
| redhat | resteasy | — | — |
| redhat | resteasy | — | — |
| redhat | resteasy | — | — |
| redhat | resteasy | — | — |
| redhat | resteasy | — | — |
| redhat | resteasy | — | — |
| redhat | resteasy | — | — |
| redhat | resteasy | — | — |
| redhat | resteasy | — | — |
| redhat | resteasy | — | — |
| redhat | resteasy | — | — |
| redhat | resteasy | — | — |
| redhat | resteasy | — | — |
| redhat | resteasy | 2.3.1 – 2.3.7.2 | — |
| redhat | resteasy | >= 3.0.0 < 3.0.9 | 3.0.9 |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
ghsa5.0MEDIUM
osv5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Exposure of Sensitive Information to an Unauthorized Actor in RESTEasy
osv·2022-05-17
CVE-2012-0818 [MEDIUM] Exposure of Sensitive Information to an Unauthorized Actor in RESTEasy
Exposure of Sensitive Information to an Unauthorized Actor in RESTEasy
RESTEasy before 2.3.1 allows remote attackers to read arbitrary files via an external entity reference in a DOM document, aka an XML external entity (XXE) injection attack.
GHSA
Exposure of Sensitive Information to an Unauthorized Actor in RESTEasy
ghsa·2022-05-17
CVE-2012-0818 [MEDIUM] CWE-200 Exposure of Sensitive Information to an Unauthorized Actor in RESTEasy
Exposure of Sensitive Information to an Unauthorized Actor in RESTEasy
RESTEasy before 2.3.1 allows remote attackers to read arbitrary files via an external entity reference in a DOM document, aka an XML external entity (XXE) injection attack.
GHSA
Exposure of Sensitive Information to an Unauthorized Actor in RESTEasy
ghsa·2022-05-17·CVSS 5.0
CVE-2011-5245 [MEDIUM] CWE-200 Exposure of Sensitive Information to an Unauthorized Actor in RESTEasy
Exposure of Sensitive Information to an Unauthorized Actor in RESTEasy
The readFrom function in providers.jaxb.JAXBXmlTypeProvider in RESTEasy before 2.3.2 allows remote attackers to read arbitrary files via an external entity reference in a Java Architecture for XML Binding (JAXB) input, aka an XML external entity (XXE) injection attack, a similar vulnerability to CVE-2012-0818.
OSV
Exposure of Sensitive Information to an Unauthorized Actor in RESTEasy
osv·2022-05-17·CVSS 5.0
CVE-2011-5245 [MEDIUM] Exposure of Sensitive Information to an Unauthorized Actor in RESTEasy
Exposure of Sensitive Information to an Unauthorized Actor in RESTEasy
The readFrom function in providers.jaxb.JAXBXmlTypeProvider in RESTEasy before 2.3.2 allows remote attackers to read arbitrary files via an external entity reference in a Java Architecture for XML Binding (JAXB) input, aka an XML external entity (XXE) injection attack, a similar vulnerability to CVE-2012-0818.
OSV
Incorrect Privilege Assignment in RESTEasy
osv·2022-05-14·CVSS 5.0
CVE-2014-3490 [MEDIUM] Incorrect Privilege Assignment in RESTEasy
Incorrect Privilege Assignment in RESTEasy
RESTEasy 2.3.1 before 2.3.8.SP2 and 3.x before 3.0.9, as used in Red Hat JBoss Enterprise Application Platform (EAP) 6.3.0, does not disable external entities when the resteasy.document.expand.entity.references parameter is set to false, which allows remote attackers to read arbitrary files and have other unspecified impact via unspecified vectors, related to an XML External Entity (XXE) issue. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0818.
GHSA
Incorrect Privilege Assignment in RESTEasy
ghsa·2022-05-14·CVSS 5.0
CVE-2014-3490 [MEDIUM] CWE-266 Incorrect Privilege Assignment in RESTEasy
Incorrect Privilege Assignment in RESTEasy
RESTEasy 2.3.1 before 2.3.8.SP2 and 3.x before 3.0.9, as used in Red Hat JBoss Enterprise Application Platform (EAP) 6.3.0, does not disable external entities when the resteasy.document.expand.entity.references parameter is set to false, which allows remote attackers to read arbitrary files and have other unspecified impact via unspecified vectors, related to an XML External Entity (XXE) issue. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0818.
Red Hat
RESTEasy: XXE via parameter entities
vendor_redhat·2014-07-23·CVSS 5.0
CVE-2014-3490 [MEDIUM] CWE-611 RESTEasy: XXE via parameter entities
RESTEasy: XXE via parameter entities
RESTEasy 2.3.1 before 2.3.8.SP2 and 3.x before 3.0.9, as used in Red Hat JBoss Enterprise Application Platform (EAP) 6.3.0, does not disable external entities when the resteasy.document.expand.entity.references parameter is set to false, which allows remote attackers to read arbitrary files and have other unspecified impact via unspecified vectors, related to an XML External Entity (XXE) issue. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0818.
It was found that the fix for CVE-2012-0818 was incomplete: external parameter entities were not disabled when the resteasy.document.expand.entity.references parameter was set to false. A remote attacker able to send XML requests to a RESTEasy endpoint could use this flaw to read fi
Red Hat
RESTEasy: XML eXternal Entity (XXE) flaw
vendor_redhat·2011-12-30·CVSS 5.0
CVE-2012-0818 [MEDIUM] CWE-611 RESTEasy: XML eXternal Entity (XXE) flaw
RESTEasy: XML eXternal Entity (XXE) flaw
RESTEasy before 2.3.1 allows remote attackers to read arbitrary files via an external entity reference in a DOM document, aka an XML external entity (XXE) injection attack.
Package: Security (Red Hat JBoss BRMS 5) - Affected
Package: Teiid (Red Hat JBoss Data Virtualization 6) - Affected
Package: Security (Red Hat JBoss SOA Platform 5) - Affected
Red Hat
RESTEasy: XML eXternal Entity (XXE) flaw
vendor_redhat·2011-12-30·CVSS 5.0
CVE-2011-5245 [MEDIUM] CWE-611 RESTEasy: XML eXternal Entity (XXE) flaw
RESTEasy: XML eXternal Entity (XXE) flaw
The readFrom function in providers.jaxb.JAXBXmlTypeProvider in RESTEasy before 2.3.2 allows remote attackers to read arbitrary files via an external entity reference in a Java Architecture for XML Binding (JAXB) input, aka an XML external entity (XXE) injection attack, a similar vulnerability to CVE-2012-0818.
Package: Security (Red Hat JBoss BRMS 5) - Affected
Package: Teiid (Red Hat JBoss Data Virtualization 6) - Affected
Package: Security (Red Hat JBoss SOA Platform 5) - Affected
Package: resteasy (Red Hat Storage 2.1) - Affected
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2014-3490 RESTEasy: XXE via parameter entities
bugzilla·2014-06-11·CVSS 5.0
CVE-2014-3490 [MEDIUM] CVE-2014-3490 RESTEasy: XXE via parameter entities
CVE-2014-3490 RESTEasy: XXE via parameter entities
IssueDescription:
It was found that the fix for CVE-2012-0818 was incomplete: external parameter entities were not disabled when the resteasy.document.expand.entity.references parameter was set to false. A remote attacker able to send XML requests to a RESTEasy endpoint could use this flaw to read files accessible to the user running the application server, and potentially perform other more advanced XXE attacks.
Discussion:
Acknowledgements:
This issue was discovered by David Jorm of Red Hat Product Security.
---
Upstream bug (currently private):
https://issues.jboss.org/browse/RESTEASY-1073
---
Upstream patch commit:
https://github.com/ronsigal/Resteasy/commit/9b7d0f574cafdcf3bea5428f3145ab4908fc6d83
---
Weinan's PR https://
Bugzilla
CVE-2011-5245 CVE-2012-0818 RESTEasy: XML eXternal Entity (XXE) flaw
bugzilla·2012-01-30·CVSS 5.0
CVE-2011-5245 [MEDIUM] CVE-2011-5245 CVE-2012-0818 RESTEasy: XML eXternal Entity (XXE) flaw
CVE-2011-5245 CVE-2012-0818 RESTEasy: XML eXternal Entity (XXE) flaw
RESTEasy permits XXE (XML eXternal Entity) attacks. If a RESTEasy endpoint is deployed, a user can submit a request containing an external XML entity. This XML entity will be resolved, allowing a remote attacker to read files in the context of the user running the application server. This flaw affects DOM Document, JAXB and Fast Infoset (FI) input.
Upstream bugs:
https://issues.jboss.org/browse/RESTEASY-637
https://issues.jboss.org/browse/RESTEASY-647
https://issues.jboss.org/browse/RESTEASY-659
Discussion:
EAP 5.1.2 issue:
https://issues.jboss.org/browse/JBPAPP-8054
EWP 5.1.2 issue:
https://issues.jboss.org/browse/JBPAPP-8055
---
This issue has been addressed in following products:
RHEV Manager version 3.x
Via RH
http://rhn.redhat.com/errata/RHSA-2012-0441.htmlhttp://rhn.redhat.com/errata/RHSA-2012-0519.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1056.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1057.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1058.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1059.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1125.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0371.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0372.htmlhttp://secunia.com/advisories/47818http://secunia.com/advisories/47832http://secunia.com/advisories/48697http://secunia.com/advisories/48954http://secunia.com/advisories/50084http://secunia.com/advisories/57716http://secunia.com/advisories/57719http://www.osvdb.org/78679http://www.securityfocus.com/bid/51748http://www.securityfocus.com/bid/51766https://bugzilla.redhat.com/show_bug.cgi?id=785631https://exchange.xforce.ibmcloud.com/vulnerabilities/72808https://issues.jboss.org/browse/RESTEASY-637http://rhn.redhat.com/errata/RHSA-2012-0441.htmlhttp://rhn.redhat.com/errata/RHSA-2012-0519.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1056.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1057.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1058.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1059.htmlhttp://rhn.redhat.com/errata/RHSA-2012-1125.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0371.htmlhttp://rhn.redhat.com/errata/RHSA-2014-0372.htmlhttp://secunia.com/advisories/47818http://secunia.com/advisories/47832http://secunia.com/advisories/48697http://secunia.com/advisories/48954http://secunia.com/advisories/50084http://secunia.com/advisories/57716http://secunia.com/advisories/57719http://www.osvdb.org/78679http://www.securityfocus.com/bid/51748http://www.securityfocus.com/bid/51766https://bugzilla.redhat.com/show_bug.cgi?id=785631https://exchange.xforce.ibmcloud.com/vulnerabilities/72808https://issues.jboss.org/browse/RESTEASY-637
2012-11-23
Published