Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2018-11586

XML external entity (XXE) vulnerability in api/rest/status in SearchBlox 8.6.7 allows remote unauthenticated users to read arbitrary files or conduct server-side request forgery (SSRF) attacks via a crafted DTD in an XML request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.373
EPSS Ranking 97.0%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2018-11586


Contact Us

Shodan ® - All rights reserved