A local, authenticated attacker could use an XML External Entity (XXE) attack to exploit weakly configured XML files to access local or remote content. A successful exploit could potentially cause a denial-of-service condition and allow the attacker to arbitrarily read any local file via system-level services.
| Software | From | Fixed in |
|---|---|---|
| rockwellautomation / factorytalk_services_platform | - | 6.11.00.x |