Security Advisory

CVE-2020-7480

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-03-23 19:24:37
Last updated 2024-08-04 09:33:19
Assigner schneider
CVSS score not scored
State PUBLISHED

Description

A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists in Andover Continuum (All versions), which could cause files on the application server filesystem to be viewable when an attacker interferes with an application's processing of XML data.