CVE-2019-10718

BlogEngine.NET 3.3.7.0 and earlier allows XML External Entity Blind Injection, related to pingback.axd and BlogEngine.Core/Web/HttpHandlers/PingbackHandler.cs.
Source: NIST
CVE-2019-10718

Leave a Reply

Your email address will not be published. Required fields are marked *