CVE-2023-40310
EUVD-2023-4490210.10.2023, 02:15
SAP PowerDesigner Client - version 16.7, does not sufficiently validate BPMN2 XML document imported from an untrusted source. As a result, URLs of external entities in BPMN2 file, although not used, would be accessed during import. A successful attack could impact availability of SAP PowerDesigner Client.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| sap | powerdesigner | 16.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration