cbcvebase.
CVE-2023-43067
published 2023-10-23

CVE-2023-43067: Dell Unity prior to 5.3 contains an XML External Entity injection vulnerability. An XXE attack could potentially exploit this vulnerability disclosing local…

medium6.5CVSS 3.1
AVNACLPRLUINSUCHINAN
Dell Unity prior to 5.3 contains an XML External Entity injection vulnerability. An XXE attack could potentially exploit this vulnerability disclosing local files in the file system.

Affected

4 ranges
VendorProductVersion rangeFixed in
dellunity
dellunity_operating_environment< 5.3.0.0.5.1205.3.0.0.5.120
dellunity_xt_operating_environment< 5.3.0.0.5.1205.3.0.0.5.120
dellunityvsa_operating_environment< 5.3.0.0.5.1205.3.0.0.5.120