A XML external entity (XXE) vulnerability exists in the import.cgi of the web interface component of the Schneider Electric's Pelco Sarix Professional in all firmware versions prior to 3.29.67.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published: 2018-03-09T23:00:00Z

Updated: 2024-09-17T03:07:08.626Z

Reserved: 2018-02-19T00:00:00

Link: CVE-2018-7230

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2018-03-09T23:29:00.483

Modified: 2022-02-02T02:13:13.707

Link: CVE-2018-7230

cve-icon Redhat

No data.