A vulnerability has been identified in Polarion ALM (All...
Moderate severity
Unreviewed
Published
Apr 11, 2023
to the GitHub Advisory Database
•
Updated Apr 11, 2023
Description
Published by the National Vulnerability Database
Apr 11, 2023
Published to the GitHub Advisory Database
Apr 11, 2023
Last updated
Apr 11, 2023
A vulnerability has been identified in Polarion ALM (All versions < V2304.0). The application contains a XML External Entity Injection (XXE) vulnerability. This could allow an attacker to view files on the application server filesystem.
References