Vulnerabilities > CVE-2023-26263 - XXE vulnerability in Talend Data Catalog 7.320210930

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
local
low complexity
talend
CWE-611

Summary

All versions of Talend Data Catalog before 8.0-20230110 are potentially vulnerable to XML External Entity (XXE) attacks in the /MIMBWebServices/license endpoint of the remote harvesting server.

Vulnerable Configurations

Part Description Count
Application
Talend
2