mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 19:17:37 +02:00
673 B
673 B
CVE-2017-5992
Description
Openpyxl 2.4.1 resolves external entities by default, which allows remote attackers to conduct XXE attacks via a crafted .xlsx document.
POC
Reference
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=854442
- https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=854442
Github
No PoCs found on GitHub currently.