CVE-2014-4669

HP Enterprise Maps 1.00 - Info Disclosure

Title source: llm
STIX 2.1

Description

HP Enterprise Maps 1.00 allows remote authenticated users to read arbitrary files via a WSDL document containing an XML external entity declaration in conjunction with an entity reference within a GetQuote operation, related to an XML External Entity (XXE) issue.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/68200
Mailing List mailing-list x_refsource_fulldisc
http://seclists.org/fulldisclosure/2014/Jun/127

Scores

EPSS 0.0035
EPSS Percentile 57.4%

Details

CWE
CWE-200
Status published
Products (1)
hp/enterprise_maps 1.00
Published Jun 28, 2014
Tracked Since Feb 18, 2026