XBRL data create application version 7.0 and previous versions improperly restricts XML external entity references (XXE). By processing a specially crafted XBRL file, arbitrary files on the system may be read by an attacker.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
edinet-fsa xbrl data create |