cause information disclosure, impacts workstation integrity and potential remote code execution on the
compromised computer, when specific crafted XML file is imported in the Web Designer configuration tool.
Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-50888 | CWE-611: Improper Restriction of XML External Entity Reference vulnerability exists that could cause information disclosure, impacts workstation integrity and potential remote code execution on the compromised computer, when specific crafted XML file is imported in the Web Designer configuration tool. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 12 Feb 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 17 Jan 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CWE-611: Improper Restriction of XML External Entity Reference vulnerability exists that could cause information disclosure, impacts workstation integrity and potential remote code execution on the compromised computer, when specific crafted XML file is imported in the Web Designer configuration tool. | |
| Weaknesses | CWE-611 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2025-02-12T17:13:56.687Z
Reserved: 2024-12-11T11:01:03.428Z
Link: CVE-2024-12476
Updated: 2025-02-12T17:13:37.394Z
Status : Received
Published: 2025-01-17T10:15:07.013
Modified: 2025-01-17T10:15:07.013
Link: CVE-2024-12476
No data.
OpenCVE Enrichment
No data.
EUVD