A vulnerability has been identified in Siemens OPC UA...
High severity
Unreviewed
Published
Nov 14, 2023
to the GitHub Advisory Database
•
Updated Nov 14, 2023
Description
Published by the National Vulnerability Database
Nov 14, 2023
Published to the GitHub Advisory Database
Nov 14, 2023
Last updated
Nov 14, 2023
A vulnerability has been identified in Siemens OPC UA Modelling Editor (SiOME) (All versions < V2.8). Affected products suffer from a XML external entity (XXE) injection vulnerability. This vulnerability could allow an attacker to interfere with an application's processing of XML data and read arbitrary files in the system.
References