A vulnerability was found in Ping Identity PingFederate up to 10.3.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the component XML File Handler. Upgrading to version 10.3.1 eliminates this vulnerability.
Ping Identity PingFederate up to 10.3.0 XML File xml external entity reference
- Virtual Patching
- October 8, 2021
- 8:14 am
CVE-2022-23122 : NETATALK PRIOR 3.1.13 SETFILPARAMS STACK-BASED OVERFLOW
Description This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk. Authentication is not required to
CVE-2023-28102 : DISCORDRB ENCODER.RB FILE OS COMMAND INJECTION
Description discordrb is an implementation of the Discord API using Ruby. In discordrb before commit `91e13043ffa` the `encoder.rb` file unsafely
CVE-2022-4126 : ABB RCCMD PRIOR 4.40 230207 HARD-CODED PASSWORD
Description Use of Default Password vulnerability in ABB RCCMD on Windows, Linux, MacOS allows Try Common or Default Usernames and