CVE-2018-25142 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

NovaRad NovaPACS Diagnostics Viewer 8.5.19.75 contains an unauthenticated XML External Entity (XXE) injection vulnerability in XML preference import settings. A…
High CVSS: 7.1

CVE-2018-25142

NovaRad NovaPACS Diagnostics Viewer 8.5.19.75 contains an unauthenticated XML External Entity (XXE) injection vulnerability in XML preference import settings. Attackers can craft malicious XML files with DTD parameter entities to retrieve arbitrary system files through an out-of-band channel attack.
Vendor
-
Product
-
CWE
CWE-611
Yayın Tarihi
2025-12-24 20:15:48
Güncelleme
2025-12-29 15:58:13
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-

Kategoriler

Referanslar