Security Advisory

CVE-2020-15809

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-03-24 16:54:47
Last updated 2024-08-04 13:30:21
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

spxmanage on certain SpinetiX devices allows requests that access unintended resources because of SSRF and Path Traversal. This affects HMP350, HMP300, and DiVA through 4.5.2-1.0.36229; HMP400 and HMP400W through 4.5.2-1.0.2-1eb2ffbd; and DSOS through 4.5.2-1.0.2-1eb2ffbd.