vendor:
Wso2 Identity Server
by:
John Page aka HYP3RLINX
8,8
CVSS
HIGH
XML External Entity / CSRF
611,352
CWE
Product Name: Wso2 Identity Server
Affected Version From: 5.1.0
Affected Version To: 5.1.0
Patch Exists: YES
Related CWE: CVE-2016-4312 (XXE), CVE-2016-4311 (CSRF)
CPE: a:wso2:wso2_identity_server
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows, Linux, Mac
2016
WSO2 Identity Server v5.1.0 XML External Entity
WSO2IS XML parser is vulnerable to XXE attack in the XACML flow, this can be exploited when XML input containing a reference to an external entity is processed by a weakly configured XML parser. The attack leads to the disclosure and exfiltration of confidential data and arbitrary system files, denial of service, server side request forgery, port scanning from the perspective of the machine where the parser is located (localhost), and other system impacts.
Mitigation:
Ensure that XML parsers are configured to prevent external entity references and disable external entity references in XML documents.