Security Advisory

CVE-2022-42745

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-11-03 00:00:00
Last updated 2024-08-03 13:10:41
Assigner Fluid Attacks
CVSS score not scored
State PUBLISHED

Description

CandidATS version 3.0.0 allows an external attacker to read arbitrary files from the server. This is possible because the application is vulnerable to XXE.