CVE-2024-21765
Published: Jan 24, 2024
Modified: Jun 20, 2025
Description
Electronic Delivery Check System (Doboku) Ver.18.1.0 and earlier, Electronic Delivery Check System (Dentsu) Ver.12.1.0 and earlier, Electronic Delivery Check System (Kikai) Ver.10.1.0 and earlier, and Electronic delivery item Inspection Support SystemVer.4.0.31 and earlier improperly restrict XML external entity references (XXE). By processing a specially crafted XML file, arbitrary files on the system may be read by an attacker.
| Vendor | Product | Versions |
|---|---|---|
Ministry of Land, Infrastructure, Transport and Tourism, Japan | Electronic Delivery Check System (Doboku) | affected Ver.18.1.0 and earlier |
Ministry of Land, Infrastructure, Transport and Tourism, Japan | Electronic Delivery Check System (Dentsu) | affected Ver.12.1.0 and earlier |
Ministry of Land, Infrastructure, Transport and Tourism, Japan | Electronic Delivery Check System (Kikai) | affected Ver.10.1.0 and earlier |
Ministry of Land, Infrastructure, Transport and Tourism, Japan | Electronic delivery item Inspection Support System | affected Ver.4.0.31 and earlier |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now