Beveiligingsadvies

CVE-2023-4595

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-11-23 12:38:04
Laatst bijgewerkt 2024-08-02 07:31:06
Toegewezen door INCIBE
CVSS-score 7.5
Status PUBLISHED

Beschrijving

An information exposure vulnerability has been found, the exploitation of which could allow a remote user to retrieve sensitive information stored on the server such as credential files, configuration files, application files, etc., simply by appending any of the following parameters to the end of the URL: %00 %0a, %20, %2a, %a0, %aa, %c0 and %ca.