Описание
A vulnerability has been identified in Mendix Excel Importer Module (All versions < V9.0.3). Uploading a manipulated XML File results in an exception that could expose information about the Application-Server and the used XML-Framework.
Ссылки
- Vendor Advisory
- Third Party AdvisoryUS Government Resource
- Vendor Advisory
- Third Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1Версия до 9.0.3 (исключая)
cpe:2.3:a:mendix:excel_importer:*:*:*:*:*:*:*:*
EPSS
Процентиль: 39%
0.00178
Низкий
4.3 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-209
Связанные уязвимости
github
больше 3 лет назад
A vulnerability has been identified in Mendix Excel Importer Module (All versions < V9.0.3). Uploading a manipulated XML File results in an exception that could expose information about the Application-Server and the used XML-Framework.
EPSS
Процентиль: 39%
0.00178
Низкий
4.3 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-209