Security Advisory
CVE-2019-3993
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
ELOG 3.1.4-57bea22 and below is affected by an information disclosure vulnerability. A remote unauthenticated attacker can recover a users password hash by sending a crafted HTTP POST request.