Skip to main content

Microsoft XML Editor XML External Entities Resolution Vulnerability

Last Update Date: 15 Jun 2011 14:17 Release Date: 15 Jun 2011 5552 Views

RISK: Medium Risk

TYPE: Clients - Productivity Products

TYPE: Productivity Products

An information disclosure vulnerability exists in the way that Microsoft XML Editor handles specially crafted XML files.


Impact

  • Information Disclosure

System / Technologies affected

  • Microsoft InfoPath 2007
  • Microsoft InfoPath 2010
  • Microsoft SQL Server 2005
  • Microsoft SQL Server Management Studio Express (SSMSE) 2005
  • Microsoft SQL Server 2008
  • Microsoft SQL Server 2008 R2
  • Microsoft Visual Studio 2005
  • Microsoft Visual Studio 2010

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

 


Vulnerability Identifier

 


Source

 


Related Link