CVE-2018-5758: Aurea Jive-N

Medium severity, CVSS 6.5. EPSS: 3% chance of exploitation in the next 30 days.

The Upload File functionality in upload.jspa in Aurea Jive Jive-n 9.0.2.1 On-Premises allows for an XML External Entity attack through a crafted file, allowing attackers to read arbitrary files.

Affected products

  • Aurea Jive-N: version 9.0.2.1 only

Published 2018-03-12. Last modified 2026-06-17.