Vulnerability Details CVE-2020-10992
Azkaban through 3.84.0 allows XXE, related to validator/XmlValidatorManager.java and user/XmlUserManager.java.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.7%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2020-10992
-
cpe:2.3:a:azkaban_project:azkaban:2.5.0
-
cpe:2.3:a:azkaban_project:azkaban:2.6.0
-
cpe:2.3:a:azkaban_project:azkaban:2.6.1
-
cpe:2.3:a:azkaban_project:azkaban:2.6.2
-
cpe:2.3:a:azkaban_project:azkaban:2.6.3
-
cpe:2.3:a:azkaban_project:azkaban:2.6.4
-
cpe:2.3:a:azkaban_project:azkaban:2.7.0
-
cpe:2.3:a:azkaban_project:azkaban:3.0.0
-
cpe:2.3:a:azkaban_project:azkaban:3.1.0
-
cpe:2.3:a:azkaban_project:azkaban:3.10.0
-
cpe:2.3:a:azkaban_project:azkaban:3.10.1
-
cpe:2.3:a:azkaban_project:azkaban:3.10.2
-
cpe:2.3:a:azkaban_project:azkaban:3.10.3
-
cpe:2.3:a:azkaban_project:azkaban:3.11.0
-
cpe:2.3:a:azkaban_project:azkaban:3.12.0
-
cpe:2.3:a:azkaban_project:azkaban:3.13.0
-
cpe:2.3:a:azkaban_project:azkaban:3.14.0
-
cpe:2.3:a:azkaban_project:azkaban:3.15.0
-
cpe:2.3:a:azkaban_project:azkaban:3.16.0
-
cpe:2.3:a:azkaban_project:azkaban:3.17.0
-
cpe:2.3:a:azkaban_project:azkaban:3.18.0
-
cpe:2.3:a:azkaban_project:azkaban:3.19.0
-
cpe:2.3:a:azkaban_project:azkaban:3.2.0
-
cpe:2.3:a:azkaban_project:azkaban:3.20.0
-
cpe:2.3:a:azkaban_project:azkaban:3.20.1
-
cpe:2.3:a:azkaban_project:azkaban:3.21.0
-
cpe:2.3:a:azkaban_project:azkaban:3.22.0
-
cpe:2.3:a:azkaban_project:azkaban:3.23.0
-
cpe:2.3:a:azkaban_project:azkaban:3.24.0
-
cpe:2.3:a:azkaban_project:azkaban:3.25.0
-
cpe:2.3:a:azkaban_project:azkaban:3.25.1
-
cpe:2.3:a:azkaban_project:azkaban:3.26.0
-
cpe:2.3:a:azkaban_project:azkaban:3.27.0
-
cpe:2.3:a:azkaban_project:azkaban:3.28.0
-
cpe:2.3:a:azkaban_project:azkaban:3.29.0
-
cpe:2.3:a:azkaban_project:azkaban:3.3.0
-
cpe:2.3:a:azkaban_project:azkaban:3.30.0
-
cpe:2.3:a:azkaban_project:azkaban:3.30.1
-
cpe:2.3:a:azkaban_project:azkaban:3.31.0
-
cpe:2.3:a:azkaban_project:azkaban:3.32.0
-
cpe:2.3:a:azkaban_project:azkaban:3.32.1
-
cpe:2.3:a:azkaban_project:azkaban:3.32.2
-
cpe:2.3:a:azkaban_project:azkaban:3.33.0
-
cpe:2.3:a:azkaban_project:azkaban:3.34.0
-
cpe:2.3:a:azkaban_project:azkaban:3.34.1
-
cpe:2.3:a:azkaban_project:azkaban:3.35.0
-
cpe:2.3:a:azkaban_project:azkaban:3.36.0
-
cpe:2.3:a:azkaban_project:azkaban:3.37.0
-
cpe:2.3:a:azkaban_project:azkaban:3.38.0
-
cpe:2.3:a:azkaban_project:azkaban:3.38.1
-
cpe:2.3:a:azkaban_project:azkaban:3.38.2
-
cpe:2.3:a:azkaban_project:azkaban:3.38.3
-
cpe:2.3:a:azkaban_project:azkaban:3.38.4
-
cpe:2.3:a:azkaban_project:azkaban:3.39.0
-
cpe:2.3:a:azkaban_project:azkaban:3.39.1
-
cpe:2.3:a:azkaban_project:azkaban:3.4.0
-
cpe:2.3:a:azkaban_project:azkaban:3.4.1
-
cpe:2.3:a:azkaban_project:azkaban:3.40.0
-
cpe:2.3:a:azkaban_project:azkaban:3.41.0
-
cpe:2.3:a:azkaban_project:azkaban:3.42.0
-
cpe:2.3:a:azkaban_project:azkaban:3.43.0
-
cpe:2.3:a:azkaban_project:azkaban:3.44.0
-
cpe:2.3:a:azkaban_project:azkaban:3.45.0
-
cpe:2.3:a:azkaban_project:azkaban:3.45.1
-
cpe:2.3:a:azkaban_project:azkaban:3.45.2
-
cpe:2.3:a:azkaban_project:azkaban:3.46.0
-
cpe:2.3:a:azkaban_project:azkaban:3.47.0
-
cpe:2.3:a:azkaban_project:azkaban:3.47.1
-
cpe:2.3:a:azkaban_project:azkaban:3.47.2
-
cpe:2.3:a:azkaban_project:azkaban:3.48.0
-
cpe:2.3:a:azkaban_project:azkaban:3.49.0
-
cpe:2.3:a:azkaban_project:azkaban:3.5.0
-
cpe:2.3:a:azkaban_project:azkaban:3.50.0
-
cpe:2.3:a:azkaban_project:azkaban:3.50.1
-
cpe:2.3:a:azkaban_project:azkaban:3.50.2
-
cpe:2.3:a:azkaban_project:azkaban:3.51.0
-
cpe:2.3:a:azkaban_project:azkaban:3.51.1
-
cpe:2.3:a:azkaban_project:azkaban:3.51.3
-
cpe:2.3:a:azkaban_project:azkaban:3.51.4
-
cpe:2.3:a:azkaban_project:azkaban:3.52.0
-
cpe:2.3:a:azkaban_project:azkaban:3.53.0
-
cpe:2.3:a:azkaban_project:azkaban:3.54.0
-
cpe:2.3:a:azkaban_project:azkaban:3.55.0
-
cpe:2.3:a:azkaban_project:azkaban:3.56.0
-
cpe:2.3:a:azkaban_project:azkaban:3.57.0
-
cpe:2.3:a:azkaban_project:azkaban:3.58.0
-
cpe:2.3:a:azkaban_project:azkaban:3.59.0
-
cpe:2.3:a:azkaban_project:azkaban:3.6.0
-
cpe:2.3:a:azkaban_project:azkaban:3.60.0
-
cpe:2.3:a:azkaban_project:azkaban:3.61.0
-
cpe:2.3:a:azkaban_project:azkaban:3.62.0
-
cpe:2.3:a:azkaban_project:azkaban:3.64.0
-
cpe:2.3:a:azkaban_project:azkaban:3.65.0
-
cpe:2.3:a:azkaban_project:azkaban:3.66.0
-
cpe:2.3:a:azkaban_project:azkaban:3.67.0
-
cpe:2.3:a:azkaban_project:azkaban:3.68.0
-
cpe:2.3:a:azkaban_project:azkaban:3.69.0
-
cpe:2.3:a:azkaban_project:azkaban:3.7.0
-
cpe:2.3:a:azkaban_project:azkaban:3.70.0
-
cpe:2.3:a:azkaban_project:azkaban:3.70.1
-
cpe:2.3:a:azkaban_project:azkaban:3.70.2
-
cpe:2.3:a:azkaban_project:azkaban:3.71.0
-
cpe:2.3:a:azkaban_project:azkaban:3.71.1
-
cpe:2.3:a:azkaban_project:azkaban:3.72.0
-
cpe:2.3:a:azkaban_project:azkaban:3.72.1
-
cpe:2.3:a:azkaban_project:azkaban:3.73.0
-
cpe:2.3:a:azkaban_project:azkaban:3.73.1
-
cpe:2.3:a:azkaban_project:azkaban:3.73.4
-
cpe:2.3:a:azkaban_project:azkaban:3.74.0
-
cpe:2.3:a:azkaban_project:azkaban:3.74.3
-
cpe:2.3:a:azkaban_project:azkaban:3.74.5
-
cpe:2.3:a:azkaban_project:azkaban:3.74.6
-
cpe:2.3:a:azkaban_project:azkaban:3.74.7
-
cpe:2.3:a:azkaban_project:azkaban:3.75.0
-
cpe:2.3:a:azkaban_project:azkaban:3.75.1
-
cpe:2.3:a:azkaban_project:azkaban:3.75.2
-
cpe:2.3:a:azkaban_project:azkaban:3.76.0
-
cpe:2.3:a:azkaban_project:azkaban:3.77.0
-
cpe:2.3:a:azkaban_project:azkaban:3.78.0
-
cpe:2.3:a:azkaban_project:azkaban:3.78.1
-
cpe:2.3:a:azkaban_project:azkaban:3.79.0
-
cpe:2.3:a:azkaban_project:azkaban:3.8.0
-
cpe:2.3:a:azkaban_project:azkaban:3.80.0
-
cpe:2.3:a:azkaban_project:azkaban:3.80.1
-
cpe:2.3:a:azkaban_project:azkaban:3.81.0
-
cpe:2.3:a:azkaban_project:azkaban:3.81.1
-
cpe:2.3:a:azkaban_project:azkaban:3.81.2
-
cpe:2.3:a:azkaban_project:azkaban:3.81.3
-
cpe:2.3:a:azkaban_project:azkaban:3.81.4
-
cpe:2.3:a:azkaban_project:azkaban:3.82
-
cpe:2.3:a:azkaban_project:azkaban:3.82.0
-
cpe:2.3:a:azkaban_project:azkaban:3.83.0
-
cpe:2.3:a:azkaban_project:azkaban:3.84.0
-
cpe:2.3:a:azkaban_project:azkaban:3.9.0
-
cpe:2.3:a:azkaban_project:azkaban:3.9.1
-
cpe:2.3:a:azkaban_project:azkaban:3.9.2