Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-2161


A CWE-611: Improper Restriction of XML External Entity Reference vulnerability exists that could cause unauthorized read access to the file system when a malicious configuration file is loaded on to the software by a local user. 


Published

2023-05-16T05:15:09.357

Last Modified

2024-11-21T07:58:03.443

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.0 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-611
  • Type: Primary
    CWE-611

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application schneider-electric opc_factory_server < 3.63 Yes
Application schneider-electric opc_factory_server 3.63 Yes

References