Description
FD Application Apr. 2022 Edition (Version 9.01) and earlier improperly restricts XML external entity references (XXE). By processing a specially crafted XML file, arbitrary files on the system may be read by an attacker.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-46591 | FD Application Apr. 2022 Edition (Version 9.01) and earlier improperly restricts XML external entity references (XXE). By processing a specially crafted XML file, arbitrary files on the system may be read by an attacker. |
References
History
Fri, 20 Sep 2024 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-09-20T16:49:53.053Z
Reserved: 2023-09-07T05:21:30.785Z
Link: CVE-2023-42132
Updated: 2024-08-02T19:16:50.612Z
Status : Modified
Published: 2023-10-02T05:15:26.470
Modified: 2024-11-21T08:22:20.347
Link: CVE-2023-42132
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD