CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.0. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CVE
CVE-2014-7177
Severity
MEDIUM
CVSS
4
EPSS
3.32%
Original NVD Description
XML External Entity vulnerability in Enalean Tuleap 7.2 and earlier allows remote authenticated users to read arbitrary files via a crafted xml document in a create action to plugins/tracker/.