Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8hp7-p44f-w939

Опубликовано: 01 мая 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

The XML document processed in the GMS ECM URL endpoint is vulnerable to XML external entity (XXE) injection, potentially resulting in the disclosure of sensitive information.

This issue affects GMS: 9.3.4 and earlier versions.

The XML document processed in the GMS ECM URL endpoint is vulnerable to XML external entity (XXE) injection, potentially resulting in the disclosure of sensitive information.

This issue affects GMS: 9.3.4 and earlier versions.

EPSS

Процентиль: 25%
0.00087
Низкий

7.1 High

CVSS3

Дефекты

CWE-611

Связанные уязвимости

CVSS3: 7.1
nvd
почти 2 года назад

The XML document processed in the GMS ECM URL endpoint is vulnerable to XML external entity (XXE) injection, potentially resulting in the disclosure of sensitive information. This issue affects GMS: 9.3.4 and earlier versions.

EPSS

Процентиль: 25%
0.00087
Низкий

7.1 High

CVSS3

Дефекты

CWE-611