VYPR
Unrated severityNVD Advisory· Published Dec 13, 2023· Updated Aug 2, 2024

Improper Restriction of XML External Entity Reference in Repox

CVE-2023-6721

Description

An XEE vulnerability has been found in Repox, which allows a remote attacker to interfere with the application's XML data processing in the fileupload function, resulting in interaction between the attacker and the server's file system.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.