Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c947-vcqx-5wf7

Опубликовано: 23 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 2.5

Описание

BigFix Patch Download Plug-ins are affected by an insecure package which is susceptible to XML injection attacks. This allows an attacker to exploit this vulnerability by injecting malicious XML content, which can lead to various issues including denial of service and unauthorized access.

BigFix Patch Download Plug-ins are affected by an insecure package which is susceptible to XML injection attacks. This allows an attacker to exploit this vulnerability by injecting malicious XML content, which can lead to various issues including denial of service and unauthorized access.

EPSS

Процентиль: 6%
0.00024
Низкий

2.5 Low

CVSS3

Дефекты

CWE-611

Связанные уязвимости

CVSS3: 2.5
nvd
около 1 года назад

BigFix Patch Download Plug-ins are affected by an insecure package which is susceptible to XML injection attacks. This allows an attacker to exploit this vulnerability by injecting malicious XML content, which can lead to various issues including denial of service and unauthorized access.

EPSS

Процентиль: 6%
0.00024
Низкий

2.5 Low

CVSS3

Дефекты

CWE-611