AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2017-6323

HIGH · CVSS 8 EPSS 0.52%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-04-16 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2017-6323
Severity
HIGH
CVSS
8
EPSS
0.52%

Original NVD Description

The Symantec Management Console prior to ITMS 8.1 RU1, ITMS 8.0_POST_HF6, and ITMS 7.6_POST_HF7 has an issue whereby XML input containing a reference to an external entity is processed by a weakly configured XML parser. This attack may lead to the disclosure of confidential data, denial of service, server side request forgery, port scanning from the perspective of the machine where the parser is located, and other system impacts.

Related CVEs

Other vulnerabilities affecting the same vendor(s)