Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j5rv-8887-pg3h

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The RSS To SMS module processes XML files in an unsafe manner. This opens the application to an XML External Entity attack that can be used to perform SSRF or read arbitrary local files.

An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The RSS To SMS module processes XML files in an unsafe manner. This opens the application to an XML External Entity attack that can be used to perform SSRF or read arbitrary local files.

EPSS

Процентиль: 62%
0.00433
Низкий

Связанные уязвимости

CVSS3: 7.5
nvd
больше 5 лет назад

An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The RSS To SMS module processes XML files in an unsafe manner. This opens the application to an XML External Entity attack that can be used to perform SSRF or read arbitrary local files.

EPSS

Процентиль: 62%
0.00433
Низкий