CVE-2023-32639

Publication date

2023-07-25 03:32:37

Family

jpcert

State

PUBLISHED

Description

Applicant Programme Ver.7.06 and earlier improperly restricts XML external entity references (XXE). By processing a specially crafted XML file, arbitrary files on the system may be read by an attacker.