CVE-2023-40310
10.10.2023, 02:15
SAP PowerDesignerClient- version 16.7, does not sufficiently validate BPMN2XML document imported from an untrusted source. As a result, URLs ofexternal entities in BPMN2 file, although not used, would be accessedduring import.A successful attack could impact availability of SAP PowerDesignerClient.Enginsight
Vendor | Product | Version |
---|---|---|
sap | powerdesigner | 16.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration