CNNVD-202510-3521 Information
CNNVD ID
CNNVD-202510-3521
Related CVE
- CNNVD Published: 2025-10-27
Description (Chinese)
BAE Systems SOCET GXP是美国BAE Systems公司的一款高端地理信息影像分析与测绘软件。 BAE Systems SOCET GXP 4.6.0.3之前版本存在安全漏洞,该漏洞源于允许外部实体存在于某些基于XML的文件中,可能导致敏感信息泄露。
Description (English)
BAE Systems SOCET GXP is a high-end geographic information image analysis and mapping software for BAE Systems, United States. The previous version of BAE Systems SOCET GXP 4.6.0.3 had a security loophole, which stemmed from allowing external entities to exist in certain XML-based documents and could lead to the disclosure of sensitive information.
Hazard Level
High
Vulnerability Type
其他
Affected Vendor
BAE Systems
Published
2025-10-27
Last Modified
2026-02-24
References
https://www.baesystems.com/en-us/product/geospatial-exploitation-products https://www.geospatialexploitationproducts.com/content/socet-gxp/vulnerabilities-disclosure/#cve-2025-54967 https://access.redhat.com/security/cve/cve-2025-54967
Patch
https://www.geospatialexploitationproducts.com/content/socet-gxp/
Share on: