Security Advisory

CVE-2023-26560

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-04-25 00:00:00
Last updated 2025-02-04 15:15:50
Assigner mitre
State PUBLISHED

Description

Northern.tech CFEngine Enterprise before 3.21.1 allows a subset of authenticated users to leverage the Scheduled Reports feature to read arbitrary files and potentially discover credentials.