Record summary

CVE-2020-11991 has a selected CVSS score of 7.5 (high); EIP currently links 1 Nuclei template.

Description

When using the StreamGenerator, the code parse a user-provided XML. A specially crafted XML, including external system entities, could be used to access any file on the server system.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Nov 25, 2023 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Nuclei templates
1

Affected products and versions

2
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied

Apache Cocoon

CVE ListApache Cocoon 2.1.0 to 2.1.12affected

Nuclei templates

1
ProjectDiscoveryHIGHApache Cocoon 2.1.12 - XML InjectionCVSS 7.5

Apache Cocoon 2.1.12 is susceptible to XML injection. When using the StreamGenerator, the code parses a user-provided XML. A specially crafted XML, including external system entities, can be used to access any file on the server system.

Impact

Successful exploitation of this vulnerability can lead to unauthorized access, data leakage, and remote code execution.

Remediation

Upgrade to Apache Cocoon 2.1.13 or later.

WeaknessesCWE-611
Authorspikpikcu
Template tagscvecve2020apachexmlcocoonxxevkevvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CPE: cpe:2.3:a:apache:cocoon:*:*:*:*:*:*:*:*
Shodan: http.html:"Apache Cocoon"
Shodan: http.html:"apache cocoon"
FOFA: body="apache cocoon"

Source: ProjectDiscovery

References

2