CVE-2022-38840: Guralp Man-Eam-0003

High severity, CVSS 7.5. EPSS: 9.8% chance of exploitation in the next 30 days.

cgi-bin/xmlstatus.cgi in Güralp MAN-EAM-0003 3.2.4 is vulnerable to an XML External Entity (XXE) issue via XML file upload, which leads to local file disclosure.

Affected products

  • Guralp Man-Eam-0003: version 3.2.4 only

Published 2023-04-16. Last modified 2026-06-17.