Back to search
CVE-2015-4538
Published: Sep 4, 2015
Modified: Aug 6, 2024
PUBLISHED
Description
The XML parser in EMC Atmos before 2.2.3.426 and 2.3.x before 2.3.1.0 allows remote authenticated users to read arbitrary files or cause a denial of service (CPU and memory consumption) via an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
1033456
vdb-entry
x_refsource_SECTRACK
20150902 ESA-2015-137: EMC Atmos XML External Entity Injection Vulnerability
mailing-list
x_refsource_BUGTRAQ
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now