A blind XML External Entity (XXE)... CVE-2022-43473

- AV AC AU C I A
发布: 2023-03-30
修订: 2024-11-21

A blind XML External Entity (XXE) vulnerability exists in the Add UCS Device functionality of ManageEngine OpManager 12.6.168. A specially crafted XML file can lead to SSRF. An attacker can serve a malicious XML payload to trigger this vulnerability.

0%
暂无可用Exp或PoC
当前有81条受影响产品信息