Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An XML External Entity (XXE) vulnerability exists in the Charles 4.2.7 import/export setup option. If a user imports a "Charles Settings.xml" file from an attacker, an intranet network may be accessed and information may be leaked.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Charles 安全漏洞
Vulnerability Description
Charles是一个HTTP监视器,它能够查看计算机和Internel之间的所有HTTP流量。 Charles 4.2.7版本中的import/export setup选项存在XML外部实体注入漏洞。远程攻击者可利用该漏洞访问内部网络并泄露信息。
CVSS Information
N/A
Vulnerability Type
N/A