Security Advisory

CVE-2021-37425

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-08-10 21:16:31
Last updated 2024-08-04 01:16:03
Assigner mitre
State PUBLISHED

Description

Altova MobileTogether Server before 7.3 SP1 allows XXE attacks, such as an InfoSetChanges/Changes attack against /workflowmanagement, or reading mobiletogetherserver.cfg and then reading the certificate and private key.