← Back

CVE-2021-27777

nvd nist
Published: May 12, 2022Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

XML External Entity (XXE) injection vulnerabilities occur when poorly configured XML parsers process user supplied input without sufficient validation. Attackers can exploit this vulnerability to manipulate XML content and inject malicious external entity references.

Affected (1)

Products: Hcltech: Unica
1 product
Unica
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 12.1.1

References (2)

Timeline

No history available yet.