Back

HIGH

eclipse-andmore: XML External Entity attack in AndroidManifest.xml parsing

Published Apr 20, 2018

Description

Eclipse XML parser for the Eclipse IDE versions 2017.2.5 and earlier was found vulnerable to an XML External Entity attack. An attacker can exploit the vulnerability by implementing malicious code on Androidmanifest.xml.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (6)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner checkpoint
Published Apr 20, 2018
Updated Sep 17, 2024
Reserved Apr 28, 2017
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Dec 4, 2017