Record summary

CVE-2019-15637 has a selected CVSS score of 8.1 (high); EIP currently links 1 catalogued exploit.

Description

Numerous Tableau products are vulnerable to XXE via a malicious workbook, extension, or data source, leading to information disclosure or a DoS. This affects Tableau Server, Tableau Desktop, Tableau Reader, and Tableau Public Desktop.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Jul 25, 2024 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Catalogued exploits
1

Affected products and versions

1
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied

Proofs of concept

1

Catalogued exploits

ExploitDBTableau - XML External EntityExploitDB exploitby Jarad KopfNot analyzed1 file
ExploitDB

PoC details

References

4