Description
HCL Workload Automation is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-31734 | HCL Workload Automation is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. |
References
History
Thu, 30 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2025-01-30T21:29:13.323Z
Reserved: 2023-03-10T03:50:27.022Z
Link: CVE-2023-28009
Updated: 2024-08-02T12:23:30.702Z
Status : Modified
Published: 2023-04-26T20:15:10.080
Modified: 2024-11-21T07:53:55.457
Link: CVE-2023-28009
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD