CVE-2023-42132
EUVD-2023-4659102.10.2023, 05:15
FD Application Apr. 2022 Edition (Version 9.01) and earlier improperly restricts XML external entity references (XXE). By processing a specially crafted XML file, arbitrary files on the system may be read by an attacker.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mhlw | fd_application | 𝑥 ≤ 9.01 |
𝑥
= Vulnerable software versions