HIGH · 7.5

CVE-2021-40690

All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to an issue where the "secureValidation" property is not passed correctly when creating a KeyInfo from ...

Vulnerability Description

All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to an issue where the "secureValidation" property is not passed correctly when creating a KeyInfo from a KeyInfoReference element. This allows an attacker to abuse an XPath Transform to extract any local .xml files in a RetrievalMethod element.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
ApacheSantuario Xml Security For Java< 2.1.7
ApacheCxf3.4.4
ApacheTomee< 8.0.8
DebianDebian Linux9.0
OracleAgile Plm9.3.6
OracleCommerce Guided Search11.3.2
OracleCommerce Platform11.3.2
OracleCommunications Diameter Intelligence Hub>= 8.0.0, <= 8.1.0
OracleCommunications Messaging Server8.1
OracleFlexcube Private Banking12.1.0
OracleOutside In Technology8.5.5
OraclePeoplesoft Enterprise Peopletools8.58
OracleRetail Bulk Data Integration16.0.3
OracleRetail Financial Integration14.1.3.2
OracleRetail Integration Bus14.1.3.2
OracleRetail Merchandising System16.0.3
OracleRetail Service Backbone14.1.3.2
OracleWeblogic Server12.2.1.4.0

Related Weaknesses (CWE)

References

FAQ

What is CVE-2021-40690?

CVE-2021-40690 is a vulnerability with a CVSS score of 7.5 (HIGH). All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to an issue where the "secureValidation" property is not passed correctly when creating a KeyInfo from ...

How severe is CVE-2021-40690?

CVE-2021-40690 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2021-40690?

Check the references section above for vendor advisories and patch information. Affected products include: Apache Santuario Xml Security For Java, Apache Cxf, Apache Tomee, Debian Debian Linux, Oracle Agile Plm.