Vulnerabilities > CVE-2022-37189 - XXE vulnerability in Ddmal Mei2Volpiano
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
HIGH Summary
DDMAL MEI2Volpiano 0.8.2 is vulnerable to XML External Entity (XXE), leading to a Denial of Service. This occurs due to the usage of the unsafe 'xml.etree' library to parse untrusted XML input.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 11 |