CVE-2021-4311

MEDIUM

Talend Open Studio for MDM - XML External Entity Reference

Title source: llm
STIX 2.1

Description

A vulnerability classified as problematic was found in Talend Open Studio for MDM. This vulnerability affects unknown code of the component XML Handler. The manipulation leads to xml external entity reference. The patch is identified as 31d442b9fb1d518128fd18f6e4d54e06c3d67793. It is recommended to apply a patch to fix this issue. VDB-217666 is the identifier assigned to this vulnerability.

References (4)

Core 4
Core References
Third Party Advisory vdb-entry technical-description
https://vuldb.com/?id.217666
Third Party Advisory signature permissions-required
https://vuldb.com/?ctiid.217666

Scores

CVSS v3 5.5
EPSS 0.0067
EPSS Percentile 47.0%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-611
Status published
Products (1)
talend/open_studio < 20230102_1935
Published Jan 09, 2023
Tracked Since Feb 18, 2026