CVE-2024-42185

BigFix Patch Download Plug-ins are affected by an insecure package which is susceptible to XML injection attacks. This allows an attacker to exploit this vulnerability by injecting malicious XML content, which can lead to various issues including denial of service and unauthorized access.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Los complementos de BigFix Patch Download se ven afectados por un paquete inseguro que es susceptible a ataques de inyección XML. Esto permite que un atacante aproveche esta vulnerabilidad inyectando contenido XML malicioso, lo que puede provocar varios problemas, como la denegación de servicio y el acceso no autorizado.

23 Jan 2025, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-23 03:15

Updated : 2026-06-17 07:49


NVD link : CVE-2024-42185

Mitre link : CVE-2024-42185

CVE.ORG link : CVE-2024-42185


JSON object : View

Products Affected

No product.

CWE
CWE-611

Improper Restriction of XML External Entity Reference