Loading
Access to external entities when parsing XML documents can lead to XML external entity (XXE) attacks. This flaw allows a remote attacker to potentially retrieve the content of arbitrary files by sending specially crafted HTTP requests.
Use CWE-611, Dogtagpki vendor hub and Dogtagpki product page to widen CVE-2022-2414 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2021-20179, CVE-2021-3551 and CVE-2020-15720 for nearby disclosures in the same product family.