CVE-2023-37497 Information

Description

The Unica application exposes an API which accepts arbitrary XML input. By manipulating the given XML an authenticated attacker with certain rights can successfully perform XML External Entity attacks (XXE) against the backend service.

Reference

https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0106547

Share on: