ZDI-23-1038: VBASE VISAM Automation Base VBASE-Editor ProjektInfo File Parsing XML External Entity Processing Information Disclosure Vulnerability
Published Aug 8, 2023
·Updated
This vulnerability allows remote attackers to disclose sensitive information on affected installations of VBASE VISAM Automation Base. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
1 affected component
VBASE VISAM Automation Base
Event History
Aug 8, 2023
Advisory Published
05:00 AM
Data Sourced
05:00 AM
Description
Frequently Asked Questions
1
What is the severity of ZDI-23-1038?
The severity of ZDI-23-1038 is high due to the potential for remote information disclosure.
2
How do I fix ZDI-23-1038?
To fix ZDI-23-1038, update to the latest version of VBASE VISAM Automation Base that addresses this vulnerability.
3
Who is affected by ZDI-23-1038?
Any installation of VBASE VISAM Automation Base is potentially affected by ZDI-23-1038.
4
What type of vulnerability is ZDI-23-1038?
ZDI-23-1038 is a remote information disclosure vulnerability.
5
What is required to exploit ZDI-23-1038?
Exploitation of ZDI-23-1038 requires user interaction, such as visiting a malicious page or opening a malicious file.