CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.3. It may be remotely exploitable.
CVE
CVE-2023-28152
Severity
MEDIUM
CVSS
5.3
EPSS
0.75%
Original NVD Description
An issue was discovered in Independentsoft JWord before 1.1.110. The API is prone to XML external entity (XXE) injection via a remote DTD in a DOCX file.
Related CVEs
Other vulnerabilities affecting the same vendor(s)