Uploading a table mapping using a manipulated XML file results in an exception that could expose information about the application-server and the used XML-framework on the Mendix Database Replication Module (All versions prior to v7.0.1).
The product generates an error message that includes sensitive information about its environment, users, or associated data.
Link | Tags |
---|---|
https://us-cert.cisa.gov/ics/advisories/icsa-21-131-05 | third party advisory |
https://cert-portal.siemens.com/productcert/pdf/ssa-919955.pdf | third party advisory |