First published: Wed May 12 2021(Updated: )
A vulnerability has been identified in Mendix Excel Importer Module (All versions < V9.0.3). Uploading a manipulated XML File results in an exception that could expose information about the Application-Server and the used XML-Framework.
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mendix Excel Importer Module | <9.0.3 | |
Mendix Excel Importer Module | <9.0.3 | 9.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this Mendix Excel Importer Module vulnerability is CVE-2021-31339.
CVE-2021-31339 is a vulnerability in Mendix Excel Importer Module (All versions < V9.0.3) that allows uploading a manipulated XML File resulting in an exception and potential exposure of information about the Application-Server and the used XML-Framework.
CVE-2021-31339 has a severity rating of 4.3, which is considered medium.
All versions of Mendix Excel Importer Module below V9.0.3 are affected by CVE-2021-31339.
To fix CVE-2021-31339, it is recommended to update Mendix Excel Importer Module to version 9.0.3 or above.