VYPR
High severity8.1NVD Advisory· Published Aug 3, 2023· Updated Jun 17, 2026

CVE-2023-37497

CVE-2023-37497

Description

The Unica application exposes an API which accepts arbitrary XML input. By manipulating the given XML, an authenticated attacker with certain rights can successfully perform XML External Entity attacks (XXE) against the backend service.

Affected products

3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.