An XML external entity (XXE) vulnerability was found in Stilog Visual Planning 8. It allows an authenticated attacker to access local server files and exfiltrate data to an external server.
References
Configurations
No configuration.
History
27 Mar 2025, 18:17
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-611 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.3 |
Information
Published : 2024-03-29 17:15
Updated : 2025-03-27 18:17
NVD link : CVE-2023-49234
Mitre link : CVE-2023-49234
CVE.ORG link : CVE-2023-49234
JSON object : View
Products Affected
No product.
CWE
CWE-611
Improper Restriction of XML External Entity Reference