CVE-2023-1288: 3ds Enovia Live Collaboration

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

An XML External Entity injection (XXE) vulnerability in ENOVIA Live Collaboration V6R2013xE allows an attacker to read local files on the server.

Affected products

  • 3ds Enovia Live Collaboration: from v6r2013xe, before v6r2013xe_fp.cfa.2240 (fixed in v6r2013xe_fp.cfa.2240)

Published 2023-03-09. Last modified 2026-06-17.