Security Advisory

CVE-2024-29010

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-05-01 18:12:53
Last updated 2024-08-02 01:03:51
Assigner sonicwall
State PUBLISHED

Description

The XML document processed in the GMS ECM URL endpoint is vulnerable to XML external entity (XXE) injection, potentially resulting in the disclosure of sensitive information. This issue affects GMS: 9.3.4 and earlier versions.