An unauthenticated could abuse a XXE vulnerability in the Smart Device Server to leak data or perform a Server-Side Request Forgery (SSRF).
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: hackerone

Published: 2023-12-19T15:43:26.312Z

Updated: 2023-12-19T15:43:26.312Z

Reserved: 2023-10-20T01:00:13.075Z


Link: CVE-2023-46265

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-12-19T16:15:11.640

Modified: 2023-12-22T20:52:36.757


Link: CVE-2023-46265

JSON object: View

cve-icon Redhat Information

No data.

CWE