Security Advisory

CVE-2024-37405

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-07-12 15:41:03
Last updated 2024-08-02 03:50:56
Assigner hackerone
State PUBLISHED

Description

Livechat messages can be leaked by combining two NoSQL injections affecting livechat:loginByToken (pre-authentication) and livechat:loadHistory.