ZeroHour

CVE-2019-16174

CVSS 3.1
8.8 high
EPSS
2%p83
Published
()
Modified
Description

An XML injection vulnerability was found in Limesurvey before 3.17.14 that allows remote attackers to import specially crafted XML files and execute code or compromise data integrity.

Vendors
limesurvey
Products
limesurvey
Weakness
CWE-611
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.