AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2024-22380

MEDIUM · CVSS 5.5 EPSS 0.21%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2024-01-24 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.5. See the original NVD description below for full technical details.

CVE
CVE-2024-22380
Severity
MEDIUM
CVSS
5.5
EPSS
0.21%

Original NVD Description

Electronic Delivery Check System (Ministry of Agriculture, Forestry and Fisheries The Agriculture and Rural Development Project Version) March, Heisei 31 era edition Ver.14.0.001.002 and earlier improperly restricts XML external entity references (XXE). By processing a specially crafted XML file, arbitrary files on the system may be read by an attacker.

Related CVEs

Other vulnerabilities affecting the same vendor(s)