CVE-2023-2161

A CWE-611: Improper Restriction of XML External Entity Reference vulnerability exists that could cause unauthorized read access to the file system when a malicious configuration file is loaded on to the software by a local user. 
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:schneider-electric:opc_factory_server:*:*:*:*:*:*:*:*
cpe:2.3:a:schneider-electric:opc_factory_server:3.63:-:*:*:*:*:*:*

History

No history.

Information

Published : 2023-05-16 05:15

Updated : 2024-02-28 20:13


NVD link : CVE-2023-2161

Mitre link : CVE-2023-2161

CVE.ORG link : CVE-2023-2161


JSON object : View

Products Affected

schneider-electric

  • opc_factory_server
CWE
CWE-611

Improper Restriction of XML External Entity Reference