CVE Database
/

CVE-2023-46802

Back to search

CVE-2023-46802

Published: Nov 6, 2023

Modified: Oct 29, 2024

PUBLISHED

Description

e-Tax software Version3.0.10 and earlier improperly restricts XML external entity references (XXE) due to the configuration of the embedded XML parser. By processing a specially crafted XML file, arbitrary files on the system may be read by an attacker.

VendorProductVersions

National Tax Agency

e-Tax software

affected
Version3.0.10 and earlier

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now