Filtered by vendor Bstek Subscriptions
Filtered by product Urule Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-24189 1 Bstek 1 Urule 2023-03-06 9.8 Critical
An XML External Entity (XXE) vulnerability in urule v2.1.7 allows attackers to execute arbitrary code via uploading a crafted XML file to /urule/common/saveFile.