This article, Part 2 in this series on XML External Entity (XXE), explores the limitations and workarounds. XML External Entity (XXE) is a very convenient vulnerability for an attacker to exploit, however, there are cases where obtaining certain files may be difficult.
Read full news article on Dzone