← Back to CVE List

CVE-2022-32458

Published: 2022-07-20T02:15Z
Last Modified: 2024-11-21T07:06Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Digiwin BPM has a XML External Entity Injection (XXE) vulnerability due to insufficient validation for user input. An unauthenticated remote attacker can perform XML injection attack to access arbitrary system files. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt