Логотип exploitDog
bind:CVE-2023-37497
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-37497

Количество 2

Количество 2

nvd логотип

CVE-2023-37497

больше 2 лет назад

The Unica application exposes an API which accepts arbitrary XML input. By manipulating the given XML, an authenticated attacker with certain rights can successfully perform XML External Entity attacks (XXE) against the backend service.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-47fr-467v-qcq4

больше 2 лет назад

The Unica application exposes an API which accepts arbitrary XML input. By manipulating the given XML, an authenticated attacker with certain rights can successfully perform XML External Entity attacks (XXE) against the backend service.

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-37497

The Unica application exposes an API which accepts arbitrary XML input. By manipulating the given XML, an authenticated attacker with certain rights can successfully perform XML External Entity attacks (XXE) against the backend service.

CVSS3: 8.1
0%
Низкий
больше 2 лет назад
github логотип
GHSA-47fr-467v-qcq4

The Unica application exposes an API which accepts arbitrary XML input. By manipulating the given XML, an authenticated attacker with certain rights can successfully perform XML External Entity attacks (XXE) against the backend service.

CVSS3: 8.1
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу