North Grid Proself Improper Restriction of XML External Entity (XXE) Reference Vulnerability
North Grid · Proself
Date added (CISA)
2024-12-03
Remediation due
2024-12-24
Known ransomware use
Not indicated
Remediation priority
P2 — past CISA due date
Description
North Grid Proself Enterprise/Standard, Gateway, and Mail Sanitize contain an improper restriction of XML External Entity (XXE) reference vulnerability, which could allow a remote, unauthenticated attacker to conduct an XXE attack.