An XML External Entity (XXE) vulnerability in the Import object and Translation Memory import functionalities of WorldServer v11.8.2 to access sensitive information and execute arbitrary commands via supplying a crafted .tmx file.
Metrics
Affected Vendors & Products
References
History
Tue, 19 Nov 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-611 | |
Metrics |
cvssV3_1
|
Mon, 18 Nov 2024 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An XML External Entity (XXE) vulnerability in the Import object and Translation Memory import functionalities of WorldServer v11.8.2 to access sensitive information and execute arbitrary commands via supplying a crafted .tmx file. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-11-18T00:00:00
Updated: 2024-11-19T15:06:42.495Z
Reserved: 2024-10-28T00:00:00
Link: CVE-2024-50848
Vulnrichment
Updated: 2024-11-19T15:04:20.011Z
NVD
Status : Awaiting Analysis
Published: 2024-11-18T21:15:06.293
Modified: 2024-11-19T21:57:32.967
Link: CVE-2024-50848
Redhat
No data.