High severity7.5NVD Advisory· Published May 10, 2023· Updated Jun 17, 2026
CVE-2023-27527
CVE-2023-27527
Description
Shinseiyo Sogo Soft (7.9A) and earlier improperly restricts XML external entity references (XXE). By processing a specially crafted XML file, arbitrary files on the PC may be accessed by an attacker.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:touki-kyoutaku-online:shinseiyo_sogo_soft:*:*:*:*:*:*:*:*Range: <=7.9a
- Range: <=7.9A
- Range: (7.9A) and earlier
Patches
Vulnerability mechanics
References
2- jvn.jp/en/jp/JVN73178249/nvdThird Party Advisory
- www.touki-kyoutaku-online.moj.go.jpnvdProduct
News mentions
0No linked articles in our index yet.