Security Advisory

CVE-2022-24424

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-04-21 20:50:16
Last updated 2024-09-16 20:43:36
Assigner dell
State PUBLISHED

Description

Dell EMC AppSync versions from 3.9 to 4.3 contain a path traversal vulnerability in AppSync server. A remote unauthenticated attacker may potentially exploit this vulnerability to gain unauthorized read access to the files stored on the server filesystem, with the privileges of the running web application.