Security Advisory

CVE-2024-35532

9.1
CRITICAL

Vulnerability Description

An XML External Entity (XXE) injection vulnerability in Intersec Geosafe-ea 2022.12, 2022.13, and 2022.14 allows attackers to perform arbitrary file reading under the privileges of the running process, make SSRF requests, or cause a Denial of Service (DoS) via unspecified vectors.
Published Date January 7, 2025
Official Source NIST NVD Advisory