Zoho ManageEngine AssetExplorer 6.2.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing license XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-08-08T17:29:58
Updated: 2024-08-05T00:26:37.521Z
Reserved: 2019-08-06T00:00:00
Link: CVE-2019-14693
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-08-08T18:15:10.867
Modified: 2019-10-09T23:46:45.453
Link: CVE-2019-14693
Redhat
No data.