CVE-2023-28828
EUVD-2023-3246011.04.2023, 10:15
A vulnerability has been identified in Polarion ALM (All versions < V22R2). The application contains a XML External Entity Injection (XXE) vulnerability. This could allow an attacker to view files on the application server filesystem.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| siemens | polarion_alm | 𝑥 < 2304.0 |
𝑥
= Vulnerable software versions