Security Advisory

CVE-2018-3881

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-08-01 20:00:00
Last updated 2024-09-16 19:09:23
Assigner talos
State PUBLISHED

Description

An exploitable unauthenticated XML external injection vulnerability was identified in FocalScope v2416. A unauthenticated attacker could submit a specially crafted web request to FocalScopes server that could cause an XXE, and potentially result in data compromise.