VISAM VBASE version 11.6.0.6 processes an XML document that can contain XML entities with URIs that resolve to documents outside of the intended sphere of control, causing the product to embed incorrect documents into its output.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.cisa.gov/uscert/ics/advisories/icsa-21-308-01 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2022-07-27T20:20:22
Updated: 2024-08-04T03:30:38.518Z
Reserved: 2021-10-15T00:00:00
Link: CVE-2021-42537
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-07-27T21:15:08.687
Modified: 2024-11-21T06:27:45.703
Link: CVE-2021-42537
Redhat
No data.