The XML document processed in the GMS ECM URL endpoint is vulnerable to XML external entity (XXE) injection, potentially resulting in the disclosure of sensitive information. This issue affects GMS: 9.3.4 and earlier versions.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: sonicwall

Published: 2024-05-01T18:12:53.853Z

Updated: 2024-06-04T17:56:39.022Z

Reserved: 2024-03-14T03:29:41.180Z


Link: CVE-2024-29010

JSON object: View

cve-icon NVD Information

Status : Awaiting Analysis

Published: 2024-05-01T18:15:17.873

Modified: 2024-05-01T19:50:25.633


Link: CVE-2024-29010

JSON object: View

cve-icon Redhat Information

No data.

CWE