
CVE-2019-14678
CVE-2019-14678: XML External Entity in SAS XML Mapper
data-exfiltrationexploitationvulnerability-analysis+1

CVE-2019-14678: XML External Entity in SAS XML Mapper
Extract the SAM and SYSTEM hives using the Volume Shadow Copy (VSS) API. With exfiltration and XOR obfuscation options. In C#, C++, Crystal, Python,…