Vigilance Vulnerability Alerts - Perl Spreadsheet-ParseXLSX: external XML entity injection, analyzed on 18/01/2024
March 2024 by Vigilance.fr
An attacker can transmit malicious XML data to Perl Spreadsheet::ParseXLSX, in order to read a file, scan sites, or trigger a denial of service.
Plus d'information sur : https://vigilance.fr/vulnerability/Perl-Spreadsheet-ParseXLSX-external-XML-entity-injection-43322