Beveiligingsadvies

CVE-2023-46802

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-11-06 01:25:12
Laatst bijgewerkt 2024-10-29 19:03:40
Toegewezen door jpcert
CVSS-score 5.5
Status PUBLISHED

Beschrijving

e-Tax software Version3.0.10 and earlier improperly restricts XML external entity references (XXE) due to the configuration of the embedded XML parser. By processing a specially crafted XML file, arbitrary files on the system may be read by an attacker.