Improper restriction of XML external entity reference (XXE) vulnerability exists in OMRON CX-Motion Pro 1.4.6.013 and earlier. If a user opens a specially crafted project file created by an attacker, sensitive information in the file system where CX-Motion Pro is installed may be disclosed.
References
Link | Resource |
---|---|
https://jvn.jp/en/vu/JVNVU94200979/ | Third Party Advisory |
Configurations
Information
Published : 2023-01-29 23:15
Updated : 2023-02-06 11:55
NVD link : CVE-2023-22322
Mitre link : CVE-2023-22322
JSON object : View
CWE
CWE-611
Improper Restriction of XML External Entity Reference
Products Affected
omron
- cx-motion_pro