Description
Delta Electronics EIP Builder version 1.11 is vulnerable to a File Parsing XML External Entity Processing Information Disclosure Vulnerability.
Problem types
CWE-611 XXE - Improper Restriction of XML External Entity Reference
Product status
Any version
Credits
kimiya working with Trend Micro Zero Day Initiative
Derek Vranes of CISA
References
filecenter.deltaww.com/...ation Disclosure Vulnerability.pdf