CBRN-Analysis – External XML entity injection

DATE 10.11.2022 Affected Vendor Bruhn NewTech Affected Product CBRN-Analysis Vulnerable version 21.0/A Fixed version 22 CVSS CVSS: 3.8 Low CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N Recommendations Update to CBRN-Analysis v.22 or newer. Vulnerability details The CBRN-Analysis is an off-the-shelf CBRN Defence Knowledge Management Software Application that provides Knowledge Management, Hazard Prediction, and Warning and Reporting (W&R) capability, supporting the planning … Continue reading CBRN-Analysis – External XML entity injection