Security Advisory

CVE-2022-26675

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-04-07 18:22:42
Last updated 2024-09-17 01:56:47
Assigner twcert
State PUBLISHED

Description

aEnrich a+HRD has inadequate filtering for special characters in URLs. An unauthenticated remote attacker can bypass authentication and perform path traversal attacks to access arbitrary files under website root directory.