Microsoft Event Viewer 1.0 XXE Injection

Microsoft Event Viewer version 1.0 suffers from an XML external entity (XXE) injection vulnerability that allows for file exfiltration.

Leave a Reply