Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-1227

Опубликовано: 11 фев. 2026
Источник: nvd
EPSS Низкий

Описание

CWE-611: Improper Restriction of XML External Entity Reference vulnerability exists that could cause unauthorized disclosure of local files, interaction within the EBO system, or denial of service conditions when a local user uploads a specially crafted TGML graphics file to the EBO server from Workstation.

EPSS

Процентиль: 1%
0.00106
Низкий

Дефекты

CWE-611

Связанные уязвимости

github
6 месяцев назад

CWE-611: Improper Restriction of XML External Entity Reference vulnerability exists that could cause unauthorized disclosure of local files, interaction within the EBO system, or denial of service conditions when a local user uploads a specially crafted TGML graphics file to the EBO server from Workstation.

CVSS3: 7.3
fstec
6 месяцев назад

Уязвимость интерфейса рабочей станции EcoStruxure Building Operation Workstation и веб-интерфейса программного обеспечения EcoStruxure Building Operation WebStation, связанная с неверным ограничением XML-ссылок на внешние объекты, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации или вызвать отказ в обслуживании

EPSS

Процентиль: 1%
0.00106
Низкий

Дефекты

CWE-611