Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-42185

Опубликовано: 23 янв. 2025
Источник: nvd
CVSS3: 2.5
EPSS Низкий

Описание

BigFix Patch Download Plug-ins are affected by an insecure package which is susceptible to XML injection attacks. This allows an attacker to exploit this vulnerability by injecting malicious XML content, which can lead to various issues including denial of service and unauthorized access.

EPSS

Процентиль: 6%
0.00024
Низкий

2.5 Low

CVSS3

Дефекты

CWE-611

Связанные уязвимости

CVSS3: 2.5
github
около 1 года назад

BigFix Patch Download Plug-ins are affected by an insecure package which is susceptible to XML injection attacks. This allows an attacker to exploit this vulnerability by injecting malicious XML content, which can lead to various issues including denial of service and unauthorized access.

EPSS

Процентиль: 6%
0.00024
Низкий

2.5 Low

CVSS3

Дефекты

CWE-611