Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-86588
HistoryNov 15, 2023 - 12:00 a.m.

Siemens OPC UA Modeling Editor (SiOME) XML External Entity Injection Vulnerability

2023-11-1500:00:00
China National Vulnerability Database
www.cnvd.org.cn
20
siemens
opc ua
modeling editor
xml
external entity injection
vulnerability
xml data
arbitrary files
exploitation
security advisory

AI Score

6.9

Confidence

Low

EPSS

0

Percentile

9.0%

Siemens OPC UA Modeling Editor (SiOME) is a free tool to create OPC UA information models or map existing companion specifications. An XML external entity injection vulnerability exists in Siemens OPC UA Modeling Editor (SiOME), which can be exploited by an attacker to interfere with the application’s processing of XML data and read arbitrary files on the system.

AI Score

6.9

Confidence

Low

EPSS

0

Percentile

9.0%

Related for CNVD-2023-86588