← Back

CVE-2023-37200

nvd nist
Published: Jul 12, 2023Modified: Nov 21, 2024

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

A CWE-611: Improper Restriction of XML External Entity Reference vulnerability exists that could cause loss of confidentiality when replacing a project file on the local filesystem and after manual restart of the server.

Affected (2)

1 product
Ecostruxure Opc Ua Server Expert
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Se
Before 2.01
Version 2.01

Timeline

No history available yet.