Microsoft XML Editor XML External Entities Resolution Vulnerability
Last Update Date:
15 Jun 2011 14:17
Release Date:
15 Jun 2011
6595
Views
RISK: Medium Risk
TYPE: Clients - Productivity Products
An information disclosure vulnerability exists in the way that Microsoft XML Editor handles specially crafted XML files.
Impact
- Information Disclosure
System / Technologies affected
- Microsoft InfoPath 2007
- Microsoft InfoPath 2010
- Microsoft SQL Server 2005
- Microsoft SQL Server Management Studio Express (SSMSE) 2005
- Microsoft SQL Server 2008
- Microsoft SQL Server 2008 R2
- Microsoft Visual Studio 2005
- Microsoft Visual Studio 2010
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Download location for patches:
http://www.microsoft.com/technet/security/Bulletin/MS11-049.mspx
Vulnerability Identifier
Source
Related Link
Share with