Filtered by vendor Obdasystems Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-40511 1 Obdasystems 1 Mastro 2022-06-28 7.5 High
OBDA systems’ Mastro 1.0 is vulnerable to XML Entity Expansion (aka “billion laughs”) attack allowing denial of service.
CVE-2021-40510 1 Obdasystems 1 Mastro 2022-06-28 7.5 High
XML eXternal Entity (XXE) in OBDA systems’ Mastro 1.0 allows remote attackers to read system files via custom DTDs.