CVE-2018-1000632
published 2018-08-20CVE-2018-1000632: dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an…
PriorityP347high7.5CVSS 3.1
AVNACLPRNUINSUCNIHAN
EPSS
6.57%
93.1th percentile
dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.
Affected
33 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | dom4j | < dom4j 2.1.1-1 (bookworm) | dom4j 2.1.1-1 (bookworm) |
| dom4j_project | dom4j | >= 0 < 2.1.1-1 | 2.1.1-1 |
| dom4j_project | dom4j | >= 0 < 2.1.1-1 | 2.1.1-1 |
| dom4j_project | dom4j | >= 0 < 2.1.1-1 | 2.1.1-1 |
| dom4j_project | dom4j | >= 0 < 2.1.1-1 | 2.1.1-1 |
| dom4j_project | dom4j | >= 0 < 1.6.1+dfsg.3-2ubuntu1.2 | 1.6.1+dfsg.3-2ubuntu1.2 |
| dom4j_project | dom4j | >= 2.0.0 < 2.0.3 | 2.0.3 |
| dom4j_project | dom4j | >= 2.1.0 < 2.1.1 | 2.1.1 |
| oracle | flexcube_investor_servicing | — | — |
| oracle | flexcube_investor_servicing | — | — |
| oracle | flexcube_investor_servicing | — | — |
| oracle | flexcube_investor_servicing | — | — |
| oracle | flexcube_investor_servicing | — | — |
| oracle | primavera_p6_enterprise_project_portfolio_management | 16.1.0.0 – 16.2.20.1 | — |
| oracle | primavera_p6_enterprise_project_portfolio_management | 17.1.0.0 – 17.12.17.1 | — |
| oracle | primavera_p6_enterprise_project_portfolio_management | 18.1.0.0 – 18.8.19.0 | — |
| oracle | primavera_p6_enterprise_project_portfolio_management | 19.12.0.0 – 19.12.6.0 | — |
| oracle | rapid_planning | — | — |
| oracle | rapid_planning | — | — |
| oracle | retail_integration_bus | — | — |
| oracle | retail_integration_bus | — | — |
| oracle | utilities_framework | — | — |
| oracle | utilities_framework | — | — |
| oracle | utilities_framework | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
osv7.5HIGH
vendor_debian7.5LOW
vendor_oracle7.5HIGH
vendor_redhat7.5HIGH
vendor_ubuntu7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
dom4j vulnerability
osv·2020-11-05·CVSS 7.5
CVE-2018-1000632 [HIGH] dom4j vulnerability
dom4j vulnerability
Mário Areias discovered that dom4j did not properly validate XML document
elements. An attacker could exploit this with a crafted XML file to cause
dom4j to crash, resulting in a denial of service, or possibly execute
arbitrary code. (CVE-2018-1000632)
OSV
Dom4j contains a XML Injection vulnerability
osv·2018-10-16
CVE-2018-1000632 [HIGH] Dom4j contains a XML Injection vulnerability
Dom4j contains a XML Injection vulnerability
dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.
Note: This advisory applies to `dom4j:dom4j` version 1.x legacy artifacts. To resolve this a change to the latest version of `org.dom4j:dom4j` is recommended.
GHSA
Dom4j contains a XML Injection vulnerability
ghsa·2018-10-16
CVE-2018-1000632 [HIGH] CWE-91 Dom4j contains a XML Injection vulnerability
Dom4j contains a XML Injection vulnerability
dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.
Note: This advisory applies to `dom4j:dom4j` version 1.x legacy artifacts. To resolve this a change to the latest version of `org.dom4j:dom4j` is recommended.
OSV
CVE-2018-1000632: dom4j version prior to version 2
osv·2018-08-20·CVSS 7.5
CVE-2018-1000632 [HIGH] CVE-2018-1000632: dom4j version prior to version 2
dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.
Ubuntu
dom4j vulnerability
vendor_ubuntu·2020-11-05·CVSS 7.5
CVE-2018-1000632 [HIGH] dom4j vulnerability
Title: dom4j vulnerability
Summary: dom4j could be made to crash or run programs if it received a specially
crafted file.
Mário Areias discovered that dom4j did not properly validate XML document
elements. An attacker could exploit this with a crafted XML file to cause
dom4j to crash, resulting in a denial of service, or possibly execute
arbitrary code. (CVE-2018-1000632)
Instructions: In general, a standard system update will make all the necessary changes.
Oracle
Oracle Oracle Utilities Applications Risk Matrix: Common (Dom4J) — CVE-2018-1000632
vendor_oracle·2020-04-15·CVSS 7.5
CVE-2018-1000632 [HIGH] Oracle Oracle Utilities Applications Risk Matrix: Common (Dom4J) — CVE-2018-1000632
Oracle Oracle Utilities Applications Risk Matrix: Common (Dom4J) vulnerability
CVE: CVE-2018-1000632
CVSS: 7.5
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpuapr2020 (APR 2020)
Red Hat
dom4j: XML Injection in Class: Element. Methods: addElement, addAttribute which can impact the integrity of XML documents
vendor_redhat·2018-07-01·CVSS 7.5
CVE-2018-1000632 [HIGH] CWE-88 dom4j: XML Injection in Class: Element. Methods: addElement, addAttribute which can impact the integrity of XML documents
dom4j: XML Injection in Class: Element. Methods: addElement, addAttribute which can impact the integrity of XML documents
dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.
Package: dom4j (Red Hat BPM Suite 6) - Out of support scope
Package: dom4j (Red Hat Decision Manager 7) - Not affected
Package: dom4j (Red Hat Enterprise Linux 7) - Will not fix
Package: dom4j (Red Hat JBoss BRMS 5) - Out of support scope
Package: dom4j (Red Hat JBoss BRMS 6) -
Debian
CVE-2018-1000632: dom4j - dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerabil...
vendor_debian·2018·CVSS 7.5
CVE-2018-1000632 [HIGH] CVE-2018-1000632: dom4j - dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerabil...
dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.
Scope: local
bookworm: resolved (fixed in 2.1.1-1)
bullseye: resolved (fixed in 2.1.1-1)
forky: resolved (fixed in 2.1.1-1)
sid: resolved (fixed in 2.1.1-1)
trixie: resolved (fixed in 2.1.1-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-1000632 dom4j: XML Injection in Class: Element. Methods: addElement, addAttribute which can impact the integrity of XML documents
bugzilla·2018-08-23·CVSS 7.5
CVE-2018-1000632 [HIGH] CVE-2018-1000632 dom4j: XML Injection in Class: Element. Methods: addElement, addAttribute which can impact the integrity of XML documents
CVE-2018-1000632 dom4j: XML Injection in Class: Element. Methods: addElement, addAttribute which can impact the integrity of XML documents
XML Injection vulnerability was found in dom4j in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document.
Upstream issue:
https://github.com/dom4j/dom4j/issues/48
Upstream patch:
https://github.com/dom4j/dom4j/commit/e598eb43d418744c4dbf62f647dd2381c9ce9387
References:
https://ihacktoprotect.com/post/dom4j-xml-injection/
Discussion:
Created dom4j tracking bugs for this issue:
Affects: fedora-all [bug 1620535]
---
This issue has been addressed in the following
Bugzilla
CVE-2018-1000632 dom4j: XML Injection in Class: Element. Methods: addElement, addAttribute which can impact the integrity of XML documents [fedora-all]
bugzilla·2018-08-23·CVSS 7.5
CVE-2018-1000632 [HIGH] CVE-2018-1000632 dom4j: XML Injection in Class: Element. Methods: addElement, addAttribute which can impact the integrity of XML documents [fedora-all]
CVE-2018-1000632 dom4j: XML Injection in Class: Element. Methods: addElement, addAttribute which can impact the integrity of XML documents [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fe
arXiv
How well does LLM generate security tests?
arxiv_fulltext·2023-10-03
How well does LLM generate security tests?
How well does LLM generate security tests?
## Abstract
Developers often build software on top of third-party libraries (Libs) to improve programmer productivity and software quality. The libraries may contain vulnerabilities exploitable by hackers to attack the applications (Apps) built on top of them. People refer to such attacks as supply chain attacks, the documented number of which has increased 742% in 2022. People created tools to mitigate such attacks, by scanning the library dependencies of Apps, identifying the usage of vulnerable library versions, and suggesting secure alternatives to vulnerable dependencies. However, recent studies show that many developers do not trust the reports by these tools; they ask for code or evidence to demonstrate how library vulnerabilities lead to
https://access.redhat.com/errata/RHSA-2019:0362https://access.redhat.com/errata/RHSA-2019:0364https://access.redhat.com/errata/RHSA-2019:0365https://access.redhat.com/errata/RHSA-2019:0380https://access.redhat.com/errata/RHSA-2019:1159https://access.redhat.com/errata/RHSA-2019:1160https://access.redhat.com/errata/RHSA-2019:1161https://access.redhat.com/errata/RHSA-2019:1162https://access.redhat.com/errata/RHSA-2019:3172https://github.com/dom4j/dom4j/commit/e598eb43d418744c4dbf62f647dd2381c9ce9387https://github.com/dom4j/dom4j/issues/48https://ihacktoprotect.com/post/dom4j-xml-injection/https://lists.apache.org/thread.html/00571f362a7a2470fba50a31282c65637c40d2e21ebe6ee535a4ed74%40%3Ccommits.maven.apache.org%3Ehttps://lists.apache.org/thread.html/4a77652531d62299a30815cf5f233af183425db8e3c9a824a814e768%40%3Cdev.maven.apache.org%3Ehttps://lists.apache.org/thread.html/5a020ecaa3c701f408f612f7ba2ee37a021644c4a39da2079ed3ddbc%40%3Ccommits.maven.apache.org%3Ehttps://lists.apache.org/thread.html/708d94141126eac03011144a971a6411fcac16d9c248d1d535a39451%40%3Csolr-user.lucene.apache.org%3Ehttps://lists.apache.org/thread.html/7e9e78f0e4288fac6591992836d2a80d4df19161e54bd71ab4b8e458%40%3Cdev.maven.apache.org%3Ehttps://lists.apache.org/thread.html/7f6e120e6ed473f4e00dde4c398fc6698eb383bd7857d20513e989ce%40%3Cdev.maven.apache.org%3Ehttps://lists.apache.org/thread.html/9d4c1af6f702c3d6d6f229de57112ddccac8ce44446a01b7937ab9e0%40%3Ccommits.maven.apache.org%3Ehttps://lists.apache.org/thread.html/d7d960b2778e35ec9b4d40c8efd468c7ce7163bcf6489b633491c89f%40%3Cdev.maven.apache.org%3Ehttps://lists.apache.org/thread.html/rb1b990d7920ae0d50da5109b73b92bab736d46c9788dd4b135cb1a51%40%3Cnotifications.freemarker.apache.org%3Ehttps://lists.debian.org/debian-lts-announce/2018/09/msg00028.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IOOVVCRQE6ATFD2JM2EMDXOQXTRIVZGP/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KJULAHVR3I5SX7OSMXAG75IMNSAYOXGA/https://security.netapp.com/advisory/ntap-20190530-0001/https://www.oracle.com/security-alerts/cpuApr2021.htmlhttps://www.oracle.com/security-alerts/cpuapr2020.htmlhttps://www.oracle.com/security-alerts/cpujul2020.htmlhttps://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.htmlhttps://access.redhat.com/errata/RHSA-2019:0362https://access.redhat.com/errata/RHSA-2019:0364https://access.redhat.com/errata/RHSA-2019:0365https://access.redhat.com/errata/RHSA-2019:0380https://access.redhat.com/errata/RHSA-2019:1159https://access.redhat.com/errata/RHSA-2019:1160https://access.redhat.com/errata/RHSA-2019:1161https://access.redhat.com/errata/RHSA-2019:1162https://access.redhat.com/errata/RHSA-2019:3172https://github.com/dom4j/dom4j/commit/e598eb43d418744c4dbf62f647dd2381c9ce9387https://github.com/dom4j/dom4j/issues/48https://ihacktoprotect.com/post/dom4j-xml-injection/https://lists.apache.org/thread.html/00571f362a7a2470fba50a31282c65637c40d2e21ebe6ee535a4ed74%40%3Ccommits.maven.apache.org%3Ehttps://lists.apache.org/thread.html/4a77652531d62299a30815cf5f233af183425db8e3c9a824a814e768%40%3Cdev.maven.apache.org%3Ehttps://lists.apache.org/thread.html/5a020ecaa3c701f408f612f7ba2ee37a021644c4a39da2079ed3ddbc%40%3Ccommits.maven.apache.org%3Ehttps://lists.apache.org/thread.html/708d94141126eac03011144a971a6411fcac16d9c248d1d535a39451%40%3Csolr-user.lucene.apache.org%3Ehttps://lists.apache.org/thread.html/7e9e78f0e4288fac6591992836d2a80d4df19161e54bd71ab4b8e458%40%3Cdev.maven.apache.org%3Ehttps://lists.apache.org/thread.html/7f6e120e6ed473f4e00dde4c398fc6698eb383bd7857d20513e989ce%40%3Cdev.maven.apache.org%3Ehttps://lists.apache.org/thread.html/9d4c1af6f702c3d6d6f229de57112ddccac8ce44446a01b7937ab9e0%40%3Ccommits.maven.apache.org%3Ehttps://lists.apache.org/thread.html/d7d960b2778e35ec9b4d40c8efd468c7ce7163bcf6489b633491c89f%40%3Cdev.maven.apache.org%3Ehttps://lists.apache.org/thread.html/rb1b990d7920ae0d50da5109b73b92bab736d46c9788dd4b135cb1a51%40%3Cnotifications.freemarker.apache.org%3Ehttps://lists.debian.org/debian-lts-announce/2018/09/msg00028.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IOOVVCRQE6ATFD2JM2EMDXOQXTRIVZGP/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KJULAHVR3I5SX7OSMXAG75IMNSAYOXGA/https://security.netapp.com/advisory/ntap-20190530-0001/https://www.oracle.com/security-alerts/cpuApr2021.htmlhttps://www.oracle.com/security-alerts/cpuapr2020.htmlhttps://www.oracle.com/security-alerts/cpujul2020.htmlhttps://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html
2018-08-20
Published