Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2021-40511

Disclosure Date: June 21, 2022 (last updated February 23, 2025)
OBDA systems’ Mastro 1.0 is vulnerable to XML Entity Expansion (aka “billion laughs”) attack allowing denial of service.
Attacker Value
Unknown

CVE-2021-40510

Disclosure Date: June 21, 2022 (last updated February 23, 2025)
XML eXternal Entity (XXE) in OBDA systems’ Mastro 1.0 allows remote attackers to read system files via custom DTDs.