Security Advisory

CVE-2020-15809

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-03-24 16:54:47
Last updated 2024-08-04 13:30:21
Assigner mitre
State PUBLISHED

Description

spxmanage on certain SpinetiX devices allows requests that access unintended resources because of SSRF and Path Traversal. This affects HMP350, HMP300, and DiVA through 4.5.2-1.0.36229; HMP400 and HMP400W through 4.5.2-1.0.2-1eb2ffbd; and DSOS through 4.5.2-1.0.2-1eb2ffbd.