Vulnerabilities
Report: Complete Guide to CVE-2018-25282 - Nmap 7.70 Denial of Service via XML Entity Expansion
CVE ID :CVE-2018-25282 Published : April 26, 2026, 1:19 p.m. | 2 hours, 10 minutes ago Description :Nmap 7.70 contains a denial of service vulnerability that allows local attackers to crash the application by processing malicious XML files with exponential entity expansion. Attackers can create a crafted XML file with nested entity definitions and open it through ZenMap's scan import functionality to cause the program to consume excessive system resources and crash. Severity: 6.2 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE Details
Attack Vector:
local
Impact:
denial of service