Eclipse CycloneDDS versions prior to 0.8.0 improperly handle invalid structures, which may allow an attacker to write arbitrary values in the XML parser.
2022-05-05T17:15:09.610
2024-11-21T06:17:06.863
Modified
CVSSv3.1: 6.6 (MEDIUM)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | eclipse | cyclonedds | < 0.8.0 | Yes |