A XML External Entity (XXE) vulnerability in the VerifichePeriodiche.aspx component of GruppoSCAI RealGimm v1.1.37p38 allows attackers to read any file in the filesystem via supplying a crafted XML file.
References
Configurations
History
No history.
Information
Published : 2023-08-31 14:15
Updated : 2023-09-11 22:15
NVD link : CVE-2023-41635
Mitre link : CVE-2023-41635
CVE.ORG link : CVE-2023-41635
JSON object : View
Products Affected
grupposcai
- realgimm
CWE
CWE-776
Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')