Vulnerabilities (CVE)

Filtered by vendor Triplea-game Subscribe
Filtered by product Triplea
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-1000546 1 Triplea-game 1 Triplea 2023-12-10 6.8 MEDIUM 7.8 HIGH
Triplea version <= 1.9.0.0.10291 contains a XML External Entity (XXE) vulnerability in Importing game data that can result in Possible information disclosure, server-side request forgery, or remote code execution. This attack appear to be exploitable via Specially crafted game data file (XML).