CVE-2021-22523

Severity CVSS v4.0:
Pending analysis
Type:
CWE-611 Improper Restriction of XML External Entity Reference ('XXE')
Publication date:
22/07/2021
Last modified:
07/11/2023

Description

XML External Entity vulnerability in Micro Focus Verastream Host Integrator, affecting version 7.8 Update 1 and earlier versions. The vulnerability could allow the control of web browser and hijacking user sessions.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:microfocus:verastream_host_integrator:*:*:*:*:*:*:*:* 7.8 (excluding)
cpe:2.3:a:microfocus:verastream_host_integrator:7.8:-:*:*:*:*:*:*
cpe:2.3:a:microfocus:verastream_host_integrator:7.8:update_1:*:*:*:*:*:*


References to Advisories, Solutions, and Tools