← All CVEs

CVE-2018-10613

high · 7.5

Multiple variants of XML External Entity (XXE) attacks may be used to exfiltrate data from the host Windows platform in GE MDS PulseNET and MDS PulseNET Enterprise version 3.2.1 and prior.

7.5
CVSS
18.1%
EPSS (exploit prob.)
97th
EPSS percentile
2018-06-04
Published

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Weaknesses

CWE-611

Affected products

VendorProductAffected versions
gemds_pulsenet<= 3.2.1
gemds_pulsenet<= 3.2.1

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2018-10613