CVE-2023-46590

A vulnerability has been identified in Siemens OPC UA Modelling Editor (SiOME) (All versions < V2.8). Affected products suffer from a XML external entity (XXE) injection vulnerability. This vulnerability could allow an attacker to interfere with an application's processing of XML data and read arbitrary files in the system.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:siemens:siemens_opc_ua_modeling_editor:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-11-14 11:15

Updated : 2023-11-20 15:18


NVD link : CVE-2023-46590

Mitre link : CVE-2023-46590

CVE.ORG link : CVE-2023-46590


JSON object : View

Products Affected

siemens

  • siemens_opc_ua_modeling_editor
CWE
CWE-611

Improper Restriction of XML External Entity Reference