Dell EMC OpenManage Server Administrator (OMSA) versions prior to 9.1.0.3 and prior to 9.2.0.4 contain an XML external entity (XXE) injection vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability to read arbitrary server system files by supplying specially crafted document type definitions (DTDs) in an XML request.
History

Mon, 16 Sep 2024 17:30:00 +0000

Type Values Removed Values Added
Title XML External Entity (XXE) Injection Vulnerability XML External Entity (XXE) Injection Vulnerability

cve-icon MITRE

Status: PUBLISHED

Assigner: dell

Published: 2019-06-06T19:13:51.076423Z

Updated: 2024-09-16T17:22:35.591Z

Reserved: 2019-01-03T00:00:00

Link: CVE-2019-3722

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-06-06T19:29:00.703

Modified: 2019-10-09T23:49:30.990

Link: CVE-2019-3722

cve-icon Redhat

No data.