Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q423-xqrx-xqpf

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Office Server Document Converter V7.2MR4 and earlier and V7.1MR7 and earlier allows a remote unauthenticated attacker to conduct an XML External Entity (XXE) attack to cause a denial of service (DoS) condition by processing a specially crafted XML document.

Office Server Document Converter V7.2MR4 and earlier and V7.1MR7 and earlier allows a remote unauthenticated attacker to conduct an XML External Entity (XXE) attack to cause a denial of service (DoS) condition by processing a specially crafted XML document.

EPSS

Процентиль: 72%
0.00719
Низкий

Дефекты

CWE-611

Связанные уязвимости

CVSS3: 7.5
nvd
больше 4 лет назад

Office Server Document Converter V7.2MR4 and earlier and V7.1MR7 and earlier allows a remote unauthenticated attacker to conduct an XML External Entity (XXE) attack to cause a denial of service (DoS) condition by processing a specially crafted XML document.

EPSS

Процентиль: 72%
0.00719
Низкий

Дефекты

CWE-611