CVE-2017-8315

Severity CVSS v4.0:
Pending analysis
Type:
CWE-611 Improper Restriction of XML External Entity Reference ('XXE')
Publication date:
20/04/2018
Last modified:
22/05/2018

Description

Eclipse XML parser for the Eclipse IDE versions 2017.2.5 and earlier was found vulnerable to an XML External Entity attack. An attacker can exploit the vulnerability by implementing malicious code on Androidmanifest.xml.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:eclipse:ide:2017.2.5:*:*:*:*:*:*:*