CVE-2023-37200

Severity CVSS v4.0:
Pending analysis
Type:
CWE-611 Improper Restriction of XML External Entity Reference ('XXE')
Publication date:
12/07/2023
Last modified:
20/07/2023

Description

<br /> A CWE-611: Improper Restriction of XML External Entity Reference vulnerability exists that<br /> could cause loss of confidentiality when replacing a project file on the local filesystem and after<br /> manual restart of the server. <br /> <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:se:ecostruxure_opc_ua_server_expert:*:*:*:*:*:*:*:* 2.01 (excluding)
cpe:2.3:a:se:ecostruxure_opc_ua_server_expert:2.01:-:*:*:*:*:*:*