FD Application Apr. 2022 Edition (Version 9.01) and earlier improperly restricts XML external entity references (XXE). By processing a specially crafted XML file, arbitrary files on the system may be read by an attacker.
History

Fri, 20 Sep 2024 17:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2023-10-02T04:12:32.133Z

Updated: 2024-09-20T16:49:53.053Z

Reserved: 2023-09-07T05:21:30.785Z

Link: CVE-2023-42132

cve-icon Vulnrichment

Updated: 2024-08-02T19:16:50.612Z

cve-icon NVD

Status : Analyzed

Published: 2023-10-02T05:15:26.470

Modified: 2023-10-03T20:56:24.067

Link: CVE-2023-42132

cve-icon Redhat

No data.