Security Advisory

CVE-2025-28399

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-04-15 00:00:00
Last updated 2025-04-16 14:17:36
Assigner mitre
State PUBLISHED

Description

An issue in Erick xmall v.1.1 and before allows a remote attacker to escalate privileges via the updateAddress method of the Address Controller class.