Vulnerabilities > Bstek

DATE CVE VULNERABILITY TITLE RISK
2023-02-24 CVE-2023-24189 XXE vulnerability in Bstek Urule 2.1.7
An XML External Entity (XXE) vulnerability in urule v2.1.7 allows attackers to execute arbitrary code via uploading a crafted XML file to /urule/common/saveFile.
network
low complexity
bstek CWE-611
critical
9.8