PatchSiren

Eparaksts CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Eparaksts CVE published 2017-02-17

CVE-2017-6055

CVE-2017-6055 describes an XML external entity (XXE) vulnerability in eParakstitajs 3 before 1.3.9 and eParaksts Java lib before 2.5.13. According to the CVE description, a crafted .edoc file could let an attacker read arbitrary files and possibly cause other unspecified impact. NVD rates the issue as high severity (CVSS 3.0: 7.8) and maps it to CWE-611.