CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2019-7442

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.0920%
EPSS Percentile38.48th
Published2019年5月8日
Last Modified2024年11月21日

Vulnerability Description

An XML external entity (XXE) vulnerability in the Password Vault Web Access (PVWA) of CyberArk Enterprise Password Vault <=10.7 allows remote attackers to read arbitrary files or potentially bypass authentication via a crafted DTD in the SAML authentication system.

Affected Platforms (CPE)

📦
Cyberark

Enterprise Password Vault

<= 10.7

References & Advisories

相關漏洞威脅