Beveiligingsadvies

CVE-2025-41772

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-03-09 08:18:49
Laatst bijgewerkt 2026-03-09 18:18:41
Toegewezen door CERTVDE
CVSS-score 7.5
Status PUBLISHED

Beschrijving

An unauthenticated remote attacker can obtain valid session tokens because they are exposed in plaintext within the URL parameters of the wwwupdate.cgi endpoint in UBR.