Security Advisory

CVE-2023-46802

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-11-06 01:25:12
Last updated 2024-10-29 19:03:40
Assigner jpcert
State PUBLISHED

Description

e-Tax software Version3.0.10 and earlier improperly restricts XML external entity references (XXE) due to the configuration of the embedded XML parser. By processing a specially crafted XML file, arbitrary files on the system may be read by an attacker.