Логотип exploitDog
bind:CVE-2023-3276
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-3276

Количество 2

Количество 2

nvd логотип

CVE-2023-3276

больше 2 лет назад

A vulnerability, which was classified as problematic, has been found in Dromara HuTool up to 5.8.19. Affected by this issue is the function readBySax of the file XmlUtil.java of the component XML Parsing Module. The manipulation leads to xml external entity reference. The exploit has been disclosed to the public and may be used. VDB-231626 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-p2qf-9vp6-3jjq

больше 2 лет назад

HuTool XML parsing module has blind XXE vulnerability

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-3276

A vulnerability, which was classified as problematic, has been found in Dromara HuTool up to 5.8.19. Affected by this issue is the function readBySax of the file XmlUtil.java of the component XML Parsing Module. The manipulation leads to xml external entity reference. The exploit has been disclosed to the public and may be used. VDB-231626 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-p2qf-9vp6-3jjq

HuTool XML parsing module has blind XXE vulnerability

CVSS3: 7.5
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу