CVE-2025-0617
An attacker with access to an HX 10.0.0 and previous versions, may send specially-crafted data to the HX console. The malicious detection would then trigger file parsing containing exponential entity expansions in the consumer process thus causing a Denial of Service.
Vendor
-
Product
-
CWE
Yayın Tarihi
2025-01-29 11:15:09
Güncelleme
2025-01-29 11:15:09
Source Identifier
trellixpsirt@trellix.com
KEV Date Added
-