Security Advisory

CVE-2017-10670

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-06-30 12:00:00
Last updated 2024-08-05 17:41:55
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

An XML External Entity (XXE) issue exists in OSCI-Transport 1.2 as used in OSCI Transport Library 1.6.1 (Java) and OSCI Transport Library 1.6 (.NET), exploitable by sending a crafted standard-conforming OSCI message from within the infrastructure.