Beveiligingsadvies

CVE-2020-21994

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-04-28 14:50:56
Laatst bijgewerkt 2024-08-04 14:30:33
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

AVE DOMINAplus <=1.10.x suffers from clear-text credentials disclosure vulnerability that allows an unauthenticated attacker to issue a request to an unprotected directory that hosts an XML file '/xml/authClients.xml' and obtain administrative login information that allows for a successful authentication bypass attack.