CVE-2024-51136

An XML External Entity (XXE) vulnerability in Dmoz2CSV in openimaj v1.3.10 allows attackers to access sensitive information or execute arbitrary code via supplying a crafted XML file.
Configurations

Configuration 1 (hide)

cpe:2.3:a:openimaj:openimaj:1.3.10:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-11-04 17:15

Updated : 2024-11-06 19:31


NVD link : CVE-2024-51136

Mitre link : CVE-2024-51136

CVE.ORG link : CVE-2024-51136


JSON object : View

Products Affected

openimaj

  • openimaj
CWE
CWE-611

Improper Restriction of XML External Entity Reference

CWE-91

XML Injection (aka Blind XPath Injection)