CVE-2021-46365
HIGHMagnolia CMS < 6.2.4 - XML External Entity Injection via XLF File
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2021-46365. PoCs published by mbadanoiu.
AI-analyzed exploit summary This repository provides a writeup and reference to a PDF detailing an XXE vulnerability in Magnolia CMS versions 6.2.3 and below. The vulnerability allows attackers to execute XML External Entity attacks via a crafted XLF file in the Export function.
Description
An issue in the Export function of Magnolia v6.2.3 and below allows attackers to execute XML External Entity attacks via a crafted XLF file.
Exploits (1)
This repository provides a writeup and reference to a PDF detailing an XXE vulnerability in Magnolia CMS versions 6.2.3 and below. The vulnerability allows attackers to execute XML External Entity attacks via a crafted XLF file in the Export function.
References (2)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H