PT-2024-10567 · Phpexcel · Phpexcel

Published

2024-11-07

·

Updated

2024-11-07

·

CVE-2015-3542

CVSS v4.0

8.7

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions PHPExcel (affected versions not specified)
Description The issue concerns an XML External Entity (XXE) vulnerability. No specific details about affected devices or real-world incidents are provided.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XXE

Weakness Enumeration

Related Identifiers

CVE-2015-3542
GHSA-3M9X-2QFJ-XVQ4

Affected Products

Phpexcel