CVE detail
CVE-2013-1140 — CVE-2013-1140
Published 2013-03-06 · Modified 2026-06-16 · Vendor cisco · Product security_monitoring_analysis_and_response_system · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0116
EPSS probability
exploitation probability, 30d
64.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
The XML parser in Cisco Security Monitoring, Analysis, and Response System (MARS) allows remote attackers to read arbitrary files via an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue, aka Bug ID CSCue55093.
Remediation
| Product | Vulnerable range | Fixed version | Advisory |
|---|
| n/a n/a | — | not specified | advisory ↗ |
References