PT-2026-7582 · Unknown · Ebo Workstation

CVE-2026-1227

·

Publicado

2026-02-10

·

Atualizado

2026-02-11

CVSS v4.0

7.0

Alta

VetorAV:L/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions EBO Workstation (affected versions not specified)
Description An issue exists due to improper restriction of XML external entity references, which could lead to unauthorized disclosure of local files, interaction within the EBO system, or denial of service. This occurs when a local user uploads a specially crafted TGML graphics file to the EBO server from the workstation. The vulnerability involves the handling of XML external entities, potentially allowing an attacker to access or manipulate data beyond the intended boundaries.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

XXE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-01882
CVE-2026-1227

Produtos afetados

Ebo Workstation