Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-pgrc-8wp5-5mvq | powertac-server XML External Entity vulnerability |
Tue, 12 Nov 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Powertac-server
Powertac-server powertac-server |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:h:powertac-server:powertac-server:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Powertac-server
Powertac-server powertac-server |
|
| Metrics |
cvssV3_1
|
Mon, 11 Nov 2024 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An XML External Entity (XXE) vulnerability in the component DocumentBuilderFactory of powertac-server v1.9.0 allows attackers to access sensitive information or execute arbitrary code via supplying a crafted request containing malicious XML entities. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-11-12T17:04:08.026Z
Reserved: 2024-10-28T00:00:00.000Z
Link: CVE-2024-51135
Updated: 2024-11-12T17:04:02.011Z
Status : Deferred
Published: 2024-11-11T19:15:04.047
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-51135
No data.
OpenCVE Enrichment
No data.
Github GHSA