Vulnerability Details CVE-2020-10990
An XXE issue exists in Accenture Mercury before 1.12.28 because of the platformlambda/core/serializers/SimpleXmlParser.java component.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 56.8%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2020-10990
-
cpe:2.3:a:accenture:mercury:-
-
cpe:2.3:a:accenture:mercury:1.11.28
-
cpe:2.3:a:accenture:mercury:1.11.29
-
cpe:2.3:a:accenture:mercury:1.11.30
-
cpe:2.3:a:accenture:mercury:1.11.33
-
cpe:2.3:a:accenture:mercury:1.11.39
-
cpe:2.3:a:accenture:mercury:1.11.40
-
cpe:2.3:a:accenture:mercury:1.12.1
-
cpe:2.3:a:accenture:mercury:1.12.12
-
cpe:2.3:a:accenture:mercury:1.12.14
-
cpe:2.3:a:accenture:mercury:1.12.17
-
cpe:2.3:a:accenture:mercury:1.12.19
-
cpe:2.3:a:accenture:mercury:1.12.26
-
cpe:2.3:a:accenture:mercury:1.12.4
-
cpe:2.3:a:accenture:mercury:1.12.7
-
cpe:2.3:a:accenture:mercury:1.12.8
-
cpe:2.3:a:accenture:mercury:1.12.9