Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2003-1564

libxml2, possibly before 2.5.0, does not properly detect recursion during entity expansion, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document containing a large number of nested entity references, aka the "billion laughs attack."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 73.7%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 9.3
Products affected by CVE-2003-1564


Contact Us

Shodan ® - All rights reserved