CVE-2016-10149 PUBLISHED

XML External Entity (XXE) vulnerability in PySAML2 4.4.0 and earlier allows remote attackers to read arbitrary files via a crafted SAML XML request or response.

EPSS 1.31% · 79.7th percentile

Risk Scores

EPSS Score
1.31%
79.7th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSpython-pysaml20, 2.4.0-0ubuntu2, 3.0.0-3ubuntu1

Timeline

References

Open in Interactive Console →