XXE Attack Vulnerability in Traccar Server by Traccar
CVE-2019-5748
9.8CRITICAL
What is CVE-2019-5748?
In Traccar Server version 4.2, a vulnerability exists in the SpotProtocolDecoder component where improper handling of XML inputs can be exploited to perform XML External Entity (XXE) attacks. This could potentially allow unauthorized access to sensitive data within the system, leading to data breaches and other security risks. It is crucial for users and administrators of Traccar Server to address this issue to ensure the integrity and confidentiality of their data.
