漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Keysight Ixia Vision Product Family Improper Restriction of XML External Entity Reference
Vulnerability Description
External XML entity injection allows arbitrary download of files. The score without least privilege principle violation is as calculated below. In combination with other issues it may facilitate further compromise of the device. Remediation in Version 6.8.0, release date: 01-Mar-25.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Vulnerability Type
XML外部实体引用的不恰当限制(XXE)
Vulnerability Title
Keysight Ixia Vision 代码问题漏洞
Vulnerability Description
Keysight Ixia Vision是美国是德科技(Keysight)公司的一系列网络数据包代理。 Keysight Ixia Vision Product Family 6.3.1版本存在代码问题漏洞,该漏洞源于外部XML实体注入可能导致任意文件下载。
CVSS Information
N/A
Vulnerability Type
N/A