CVE-2023-46590
14.11.2023, 11:15
A vulnerability has been identified in Siemens OPC UA Modelling Editor (SiOME) (All versions < V2.8). Affected products suffer from a XML external entity (XXE) injection vulnerability. This vulnerability could allow an attacker to interfere with an application's processing of XML data and read arbitrary files in the system.Enginsight
Vendor | Product | Version |
---|---|---|
siemens | siemens_opc_ua_modeling_editor | 𝑥 < 2.8 |
𝑥
= Vulnerable software versions