Falhas do tipo CWE-611

573 resultados
CVE-2022-2759MEDIUMDelta Electronics Delta Robot Automation Studio (DRAS) versions prior to 1.13.20 are affected by improper restrictions where the software prEPSS 1.0%CVE-2026-34401MEDIUMXML Notepad: XML External Entity (XXE) Injection via Unsafe XmlTextReader in XML Diff and Schema LoadingEPSS 1.0%CVE-2023-2806MEDIUMWeaver e-cology API RequestInfoByXml xml external entity referenceEPSS 1.0%CVE-2020-7036HIGHXXE in Avaya Callback Assist AdministrationEPSS 1.0%CVE-2021-1369MEDIUMCisco Firepower Device Manager On-Box Software XML External Entity VulnerabilityEPSS 1.0%CVE-2019-3752HIGHDell EMC Avamar Server versions 7.4.1, 7.5.0, 7.5.1, 18.2 and 19.1 and Dell EMC Integrated Data Protection Appliance (IDPA) versions 2.0, 2.EPSS 1.0%CVE-2023-27476HIGHXML External Entity (XXE) Injection in OWSLibEPSS 1.0%CVE-2024-45294HIGH`org.hl7.fhir.core` XXE vulnerability in XSLT transformsEPSS 1.0%CVE-2024-52596HIGHSimpleSAMLphp xml-common XXE vulnerabilityEPSS 1.0%CVE-2023-32327HIGHIBM Security Access Manager Container XML external entity injectionEPSS 1.0%CVE-2022-45397CRITICALJenkins OSF Builder Suite : : XML Linter Plugin 1.0.2 and earlier does not configure its XML parser to prevent XML external entity (XXE) attEPSS 1.0%CVE-2022-45396CRITICALJenkins SourceMonitor Plugin 0.2 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.EPSS 1.0%CVE-2023-23595HIGHBlueCat Device Registration Portal 2.2 allows XXE attacks that exfiltrate single-line files. A single-line file might contain credentials, sEPSS 1.0%CVE-2022-46682CRITICALJenkins Plot Plugin 2.1.11 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.EPSS 0.9%CVE-2022-32285A vulnerability has been identified in Mendix SAML Module (Mendix 7 compatible) (All versions < V1.16.6), Mendix SAML Module (Mendix 8 compaEPSS 0.9%CVE-2022-29801A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.13), Teamcenter V13.0 (All versions < V13.0.0.9). The applicEPSS 0.9%CVE-2022-0221MEDIUMA CWE-611: Improper Restriction of XML External Entity Reference vulnerability exists that could result in information disclosure when openiEPSS 0.9%CVE-2023-27876HIGHIBM TRIRIGA Application Platform XML external entity injectionEPSS 0.9%CVE-2022-40747CRITICAL"IBM InfoSphere Information Server 11.7 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote atEPSS 0.9%CVE-2024-34345HIGH@cyclonedx/cyclonedx-library Improper Restriction of XML External Entity Reference vulnerabilityEPSS 0.9%