hyp3rlinx.altervista.org
http://hyp3rlinx.altervista.org/advisories/FSPRO-LABS-EVENT-LOG-EXPLORER-XML-INJECTION-INFO-DISCLOSURE.txt CVE-2018-16252
LOW
FsPro Labs Event Log Explorer v4.6.1.2115 - XML External Entity Injection
Record summary
CVE-2018-16252 has a selected CVSS score of 3.3 (low); EIP currently links 1 catalogued exploit.
Description
FsPro Labs Event Log Explorer 4.6.1.2115 has ".elx" FileType XML External Entity Injection.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBFsPro Labs Event Log Explorer v4.6.1.2115 - XML External Entity InjectionExploitDB exploitby hyp3rlinxNot analyzed1 file
References
4packetstormsecurity.com
http://packetstormsecurity.com/files/149195/FsPro-Labs-Event-Log-Explorer-4.6.1.2115-XML-Injection.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2018-16252 45319exploit
https://www.exploit-db.com/exploits/45319