Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Tools/GitHubGitHub/mbadanoiu/mal-007
Vulnerability AnalysisExploitationWeb Application ExploitationPenetration TestingPapers & Research
GitHubmbadanoiu/mal-007

MAL-007

MAL-007: XML External Entity via Local Registry Entries in WSO2 ESB

View Repository
32 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

MAL-007: XML External Entity via Local Registry Entries in WSO2 ESB

An inline XML External Entity (XXE) attack was identified in the WSO2 ESB “Local Entities” tool.

Why no CVE?

The vendor replied that this vulnerability was "Fixed in WUM" and no public disclosure was made.

Requirements:

This vulnerability requires:

  • Valid user credentials

Proof Of Concept:

More details and the exploitation process can be found in this PDF.

Download Tool