Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-611 (XML外部实体引用的不恰当限制(XXE)) — Vulnerability Class 417

417 vulnerabilities classified as CWE-611 (XML外部实体引用的不恰当限制(XXE)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2022-2330 XXE vulnerability in DLP Endpoint for Windows — DLP Endpoint for Windows 6.5 Medium2022-08-30
CVE-2020-14379 Red Hat JBoss EJB Client 代码问题漏洞 — Red Hat AMQ 5.6 -2022-08-16
CVE-2022-2838 Eclipse Sphinx 代码问题漏洞 — Eclipse Sphinx 7.5 -2022-08-16
CVE-2022-1704 Inductive Automation Ignition — Ignition 7.6 High2022-08-05
CVE-2022-2414 Dogtag PKI 代码问题漏洞 — Dogtag PKI 7.5 -2022-07-29
CVE-2022-2131 OpenKM XXE Injection — OpenKM Document Management Community 8.5 High2022-07-25
CVE-2022-32458 Data Systems Consulting Co., Ltd. BPM - XML External Entity (XXE) Injection — BPM 7.5 High2022-07-20
CVE-2022-35168 SAP Business One 代码问题漏洞 — SAP Business one 7.5 -2022-07-12
CVE-2021-41042 Eclipse Lyo 代码问题漏洞 — Eclipse Lyo 5.3 -2022-07-07
CVE-2022-23170 SysAid - Okta SSO integration — SysAid - Okta SSO integration 5.9 Medium2022-06-24
CVE-2022-32285 Siemens Mendix SAML Module 代码问题漏洞 — Mendix SAML Module (Mendix 7 compatible) 7.5 -2022-06-14
CVE-2022-29801 Siemens Teamcenter 代码问题漏洞 — Teamcenter V12.4 7.5 -2022-05-10
CVE-2022-1331 Delta Electronics DMARS Improper Restriction of XML External Entity Reference — DMARS 5.5 Medium2022-05-03
CVE-2022-21949 Multiple XXE vulnerabilities in OBS — Open Build Service 8.8 High2022-05-03
CVE-2022-29265 Improper Restriction of XML External Entity References in Multiple Components — Apache NiFi 7.5 -2022-04-30
CVE-2022-24898 Arbitrary file access through XML parsing in org.xwiki.commons:xwiki-commons-xml — xwiki-commons 4.9 Medium2022-04-28
CVE-2022-0272 Improper Restriction of XML External Entity Reference in detekt/detekt — detekt/detekt 9.1 -2022-04-21
CVE-2021-43990 ICSA-22-109-03 FANUC ROBOGUIDE Simulation Platform — ROBOGUIDE 6.1 Medium2022-04-20
CVE-2022-1018 ICSA-22-088-01 Rockwell Automation ISaGRAF — Connected Component Workbench 5.5 Medium2022-04-01
CVE-2022-0221 Schneider Electric SCADAPack 代码问题漏洞 — SCADAPack Workbench 5.5 Medium2022-03-28
CVE-2021-44477 GE Gas Power ToolBoxST Improper Restriction of XML External Entity Reference — ToolBoxST 7.5 High2022-03-25
CVE-2022-0861 ePO XML extended entity vulnerability — McAfee ePolicy Orchestrator (ePO) 3.5 Low2022-03-23
CVE-2022-22795 Signiant - Manager+Agents XML External Entity (XXE) — Signiant 6.8 Medium2022-03-09
CVE-2022-0839 Improper Restriction of XML External Entity Reference in liquibase/liquibase — liquibase/liquibase 9.1 -2022-03-04
CVE-2022-0265 Improper Restriction of XML External Entity Reference in hazelcast/hazelcast — hazelcast/hazelcast 9.1 -2022-03-03
CVE-2022-23640 Improper Restriction of XML External Entity Reference in Excel-Streaming-Reader — excel-streaming-reader 9.8 Critical2022-03-02
CVE-2020-14478 IMPROPER RESTRICTION OF XML EXTERNAL ENTITY REFERENCE CWE-611 — FactoryTalk Services Platform 7.1 -2022-02-24
CVE-2022-23031 F5 BIG-IP 代码问题漏洞 — BIG-IP FPS, ASM, and Advanced WAF 4.9 -2022-01-25
CVE-2022-0219 Improper Restriction of XML External Entity Reference in skylot/jadx — skylot/jadx 6.2 -2022-01-20
CVE-2022-0239 Improper Restriction of XML External Entity Reference in stanfordnlp/corenlp — stanfordnlp/corenlp 8.4 -2022-01-17

Vulnerabilities classified as CWE-611 (XML外部实体引用的不恰当限制(XXE)) represent 417 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.