CVE-2018-5758: Aurea Jive-N
Medium severity, CVSS 6.5. EPSS: 3% chance of exploitation in the next 30 days.
The Upload File functionality in upload.jspa in Aurea Jive Jive-n 9.0.2.1 On-Premises allows for an XML External Entity attack through a crafted file, allowing attackers to read arbitrary files.
Affected products
- Aurea Jive-N: version 9.0.2.1 only
Published 2018-03-12. Last modified 2026-06-17.