VDB

GSD-2017-17762

GSD-2017-17762 PUBLISHED

XML external entity (XXE) vulnerability in Episerver 7 patch 4 and earlier allows remote attackers to read arbitrary files via a crafted DTD in an XML request involving util/xmlrpc/Handler.ashx.

Affected Products

VendorProductVersions
n/an/an/a

Timeline

  • Sep 21, 2017 CVE Published
  • Dec 18, 2025 PoC Published
  • Dec 18, 2025 PoC Published
  • Jan 15, 2026 PoC Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›