Description
HCL Workload Automation 9.4, 9.5, and 10.1 are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-31733 | HCL Workload Automation 9.4, 9.5, and 10.1 are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. |
References
History
Thu, 30 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2025-01-30T21:29:33.785Z
Reserved: 2023-03-10T03:50:27.022Z
Link: CVE-2023-28008
Updated: 2024-08-02T12:23:30.797Z
Status : Modified
Published: 2023-04-26T20:15:10.000
Modified: 2024-11-21T07:53:55.340
Link: CVE-2023-28008
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD