Vulnerabilities > CVE-2023-29498 - XXE vulnerability in Fujielectric Frenic RHC Loader 1.1.0.3

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
local
low complexity
fujielectric
CWE-611

Summary

Improper restriction of XML external entity reference (XXE) vulnerability exists in FRENIC RHC Loader v1.1.0.3 and earlier. If a user opens a specially crafted project file, sensitive information on the system where the affected product is installed may be disclosed.

Vulnerable Configurations

Part Description Count
Application
Fujielectric
2