CVE-2023-24189
EUVD-2023-2824824.02.2023, 22:15
An XML External Entity (XXE) vulnerability in urule v2.1.7 allows attackers to execute arbitrary code via uploading a crafted XML file to /urule/common/saveFile.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| bstek | urule | 2.1.7 |
𝑥
= Vulnerable software versions