Security Advisory

CVE-2020-37144

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-05 16:13:40
Last updated 2026-04-07 14:05:21
Assigner VulnCheck
State PUBLISHED

Description

Exagate SYSGuard 6001 contains a cross-site request forgery vulnerability that allows attackers to create unauthorized admin accounts through a crafted HTML form. Attackers can trick users into submitting a malicious form to /kulyon.php that adds a new user with administrative privileges without the victims consent.