VYPR
Unrated severityNVD Advisory· Published May 12, 2022· Updated Sep 16, 2024

HCL Unica Platform is vulnerable to XML External Entity (XXE) injection

CVE-2021-27777

Description

XML External Entity (XXE) injection vulnerabilities occur when poorly configured XML parsers process user supplied input without sufficient validation. Attackers can exploit this vulnerability to manipulate XML content and inject malicious external entity references.

Affected products

1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.