Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3pr4-6x9m-839x

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A vulnerability has been identified in Solid Edge SE2021 (All Versions < SE2021MP7). An XML external entity injection vulnerability in the underlying XML parser could cause the affected application to disclose arbitrary files to remote attackers by loading a specially crafted xml file.

A vulnerability has been identified in Solid Edge SE2021 (All Versions < SE2021MP7). An XML external entity injection vulnerability in the underlying XML parser could cause the affected application to disclose arbitrary files to remote attackers by loading a specially crafted xml file.

EPSS

Процентиль: 44%
0.00218
Низкий

Дефекты

CWE-611

Связанные уязвимости

CVSS3: 5.5
nvd
больше 4 лет назад

A vulnerability has been identified in Solid Edge SE2021 (All Versions < SE2021MP7). An XML external entity injection vulnerability in the underlying XML parser could cause the affected application to disclose arbitrary files to remote attackers by loading a specially crafted xml file.

EPSS

Процентиль: 44%
0.00218
Низкий

Дефекты

CWE-611