CVE-2020-29436 is a vulnerability in Sonatype Nexus Repository Manager
Published on December 17, 2020
Sonatype Nexus Repository Manager 3.x before 3.29.0 allows a user with admin privileges to configure the system to gain access to content outside of NXRM via an XXE vulnerability. Fixed in version 3.29.0.
Products Associated with CVE-2020-29436
Want to know whenever a new CVE is published for Sonatype Nexus Repository Manager? stack.watch will email you.
Exploit Probability
EPSS
0.51%
Percentile
66.44%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.