Back to search
CVE-2015-3623
Published: Sep 16, 2015
Modified: Aug 6, 2024
PUBLISHED
Description
XML external entity (XXE) vulnerability in QlikTech Qlikview before 11.20 SR12 allows remote attackers to conduct server-side request forgery (SSRF) attacks and read arbitrary files via crafted XML data in a request to AccessPoint.aspx.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
38118
exploit
x_refsource_EXPLOIT-DB
20150908 [CVE-2015-3623] Qlikview blind XXE Security Vulnerability
mailing-list
x_refsource_BUGTRAQ
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now