Vulnerability Details CVE-2023-28828
A vulnerability has been identified in Polarion ALM (All versions < V22R2). The application contains a XML External Entity Injection (XXE) vulnerability. This could allow an attacker to view files on the application server filesystem.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 36.0%
CVSS Severity
CVSS v3 Score 5.9
Products affected by CVE-2023-28828
-
cpe:2.3:a:siemens:polarion_alm:-
-
cpe:2.3:a:siemens:polarion_alm:21.0