github.com
https://github.com/JPCERTCC/LogonTracer/releases/tag/v1.2.1 CVE-2018-16166
HIGH
Record summary
CVE-2018-16166 has a selected CVSS score of 8.8 (high).
Description
LogonTracer 1.2.0 and earlier allows remote attackers to conduct XML External Entity (XXE) attacks via unspecified vectors.
Description source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
| CVE List | 1.2.0 and earlier | affected |
References
3jvn.jp
https://jvn.jp/en/vu/JVNVU98026636/index.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2018-16166