CVE-2024-47582
CVE-2024-47582
Título es
CVE-2024-47582
Mar, 10/12/2024 – 01:15
Tipo
CWE-611
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2024-47582
Descripción en
Due to missing validation of XML input, an unauthenticated attacker could send malicious input to an endpoint which leads to XML Entity Expansion attack. This causes limited impact on availability of the application.
10/12/2024
10/12/2024
Vector CVSS:3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Gravedad 3.1 (CVSS 3.1 Base Score)
5.30
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
MEDIUM
Enviar en el boletín
Off
