DDMAL MEI2Volpiano 0.8.2 is vulnerable to XML External Entity (XXE), leading to a Denial of Service. This occurs due to the usage of the unsafe 'xml.etree' library to parse untrusted XML input.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-09-07T12:34:59
Updated: 2024-08-03T10:21:33.224Z
Reserved: 2022-08-01T00:00:00
Link: CVE-2022-37189
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2022-09-07T13:15:09.380
Modified: 2022-09-10T02:43:51.907
Link: CVE-2022-37189
Redhat
No data.