CVE-2024-45745
CVSS 3.1 Score 5 of 10 (medium)
Details
Published Sep 27, 2024
Updated: Sep 30, 2024
CWE ID 611
Summary
CVE-2024-45745 is a vulnerability affecting TopQuadrant TopBraid EDG before version 8.0.1. An authenticated attacker can exploit this issue by uploading a malicious XML DTD file, enabling them to execute JavaScript code. This code can be used to read local files or access external URLs (XML External Entity, or XXE), posing a potential security risk. The flaw has been addressed in version 8.0.1, which includes a bug fix identified as TBS-6721.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.