Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The XML parser in EMC Atmos before 2.2.3.426 and 2.3.x before 2.3.1.0 allows remote authenticated users to read arbitrary files or cause a denial of service (CPU and memory consumption) via an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
EMC Atmos XML解析器拒绝服务漏洞
Vulnerability Description
EMC Atmos是美国易安信(EMC)公司的一套全球可访问的云计算存储平台。该平台可实现大规模非结构化数据的存储、归档和访问,并提供横向扩展对象存储、元数据驱动型策略等功能。 EMC Atmos 2.2.3版本和2.3.0版本的XML解析器中存在安全漏洞。远程攻击者可借助外部实体声明和实体引用的文档利用该漏洞读取任意文件或造成拒绝服务(CPU和内存消耗)。
CVSS Information
N/A
Vulnerability Type
N/A