CVE-2023-6721

Severity CVSS v4.0:
Pending analysis
Type:
CWE-611 Improper Restriction of XML External Entity Reference ('XXE')
Publication date:
13/12/2023
Last modified:
18/12/2023

Description

An XEE vulnerability has been found in Repox, which allows a remote attacker to interfere with the application's XML data processing in the fileupload function, resulting in interaction between the attacker and the server's file system.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:europeana:repox:2.3.7:*:*:*:*:*:*:*