Description
An XEE vulnerability has been found in Repox, which allows a remote attacker to interfere with the application's XML data processing in the fileupload function, resulting in interaction between the attacker and the server's file system.
No analysis available yet.
Remediation
Vendor Solution
There is no reported solution at this time.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-0296 | An XEE vulnerability has been found in Repox, which allows a remote attacker to interfere with the application's XML data processing in the fileupload function, resulting in interaction between the attacker and the server's file system. |
References
History
No history.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-08-02T08:35:14.894Z
Reserved: 2023-12-12T08:04:46.692Z
Link: CVE-2023-6721
No data.
Status : Modified
Published: 2023-12-13T10:15:11.793
Modified: 2026-06-17T06:51:17.987
Link: CVE-2023-6721
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-611
Improper Restriction of XML External Entity Reference
EUVD