CVE Database
/

CVE-2023-43624

Back to search

CVE-2023-43624

Published: Oct 23, 2023

Modified: Sep 17, 2024

PUBLISHED

Description

CX-Designer Ver.3.740 and earlier (included in CX-One CXONE-AL[][]D-V4) contains an improper restriction of XML external entity reference (XXE) vulnerability. If a user opens a specially crafted project file created by an attacker, sensitive information in the file system where CX-Designer is installed may be disclosed.

VendorProductVersions

OMRON Corporation

CX-Designer

affected
Ver.3.740 and earlier (included in CX-One CXONE-AL[][]D-V4)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now