Description
XML External Entity vulnerability in libexpat 2.2.0 and earlier (Expat XML Parser Library) allows attackers to put the parser in an infinite loop using a malformed external entity definition from an external DTD.
Remediation
References
Related Vulnerabilities
Moodle Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2013-5674)
WordPress Plugin DB Toolkit 'uploadify.php' Arbitrary File Upload (0.1.10)
Drupal Core 6.x Remote Code Execution (6.0 - 6.38)
WordPress Other Vulnerability (CVE-2007-3241)
XWiki Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2023-34466)