AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2019-9761

HIGH · CVSS 7.5 EPSS 1.71%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-03-14 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2019-9761
Severity
HIGH
CVSS
7.5
EPSS
1.71%

Original Filing — NVD Description

An XXE issue was discovered in PHPSHE 1.7, which can be used to read any file in the system or scan the internal network without authentication. This occurs because of the call to wechat_getxml in include/plugin/payment/wechat/notify_url.php.