Security Advisory

CVE-2023-37196

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-07-12 06:22:46
Last updated 2024-11-07 14:46:44
Assigner schneider
State PUBLISHED

Description

A CWE-89: Improper Neutralization of Special Elements vulnerability used in an SQL Command (SQL Injection) vulnerability exists that could allow a user already authenticated on DCE to access unauthorized content, change, or delete content, or perform unauthorized actions when tampering with the alert settings of endpoints on DCE.