Описание
NSA Ghidra before 9.0.1 allows XXE when a project is opened or restored, or a tool is imported, as demonstrated by a project.prp file.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 9.0.1 (исключая)
cpe:2.3:a:nsa:ghidra:*:*:*:*:*:*:*:*
EPSS
Процентиль: 55%
0.00325
Низкий
9.1 Critical
CVSS3
9.4 Critical
CVSS2
Дефекты
CWE-611
Связанные уязвимости
CVSS3: 9.1
debian
больше 6 лет назад
NSA Ghidra before 9.0.1 allows XXE when a project is opened or restore ...
CVSS3: 9.1
github
больше 3 лет назад
NSA Ghidra before 9.0.1 allows XXE when a project is opened or restored, or a tool is imported, as demonstrated by a project.prp file.
EPSS
Процентиль: 55%
0.00325
Низкий
9.1 Critical
CVSS3
9.4 Critical
CVSS2
Дефекты
CWE-611