Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
XMLBlueprint through 16.191112 is affected by XML External Entity Injection. The impact is: Arbitrary File Read when an XML File is validated. The component is: XML Validate function. The attack vector is: Specially crafted XML payload.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
XMLBlueprint 代码问题漏洞
Vulnerability Description
XMLBlueprint是一款基于Windows平台的XML编辑器,它支持DTD、Relax NG、Schematron、XSD、XSLT和XPath等。 XMLBlueprint 16.191112及之前版本中的‘Validate’函数存在代码问题漏洞,该漏洞源于程序没有正确处理XML外部实体。远程攻击者可借助特制XML内容利用该漏洞读取服务器上的任意文件。
CVSS Information
N/A
Vulnerability Type
N/A