CVE-2018-10613

CVE-2018-10613

Vendor Ge
Product MDS PulseNET and MDS PulseNET Enterprise
Weakness CWE-611 · XXE
Published June 4, 2018
Last update September 16, 2024

CVSS base score

What the vulnerability does

01Description

Multiple variants of XML External Entity (XXE) attacks may be used to exfiltrate data from the host Windows platform in GE MDS PulseNET and MDS PulseNET Enterprise version 3.2.1 and prior.

Key dates

02Disclosure timeline

June 4, 2018 CVE published
September 16, 2024 Record updated