ZeroHour

CVE-2021-23418

PoC
CVSS 3.1
9.8 critical
EPSS
2%p75
Published
()
Modified
Description

The package glances before 3.2.1 are vulnerable to XML External Entity (XXE) Injection via the use of Fault to parse untrusted XML data, which is known to be vulnerable to XML attacks.

Vendors
glances project
Products
glances
Weakness
CWE-611
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.