Security Advisory

CVE-2025-54766

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-07-28 23:16:13
Last updated 2025-11-03 20:06:33
Assigner KoreLogic
State PUBLISHED

Description

An API endpoint that should be limited to web application administrators is hidden from, but accessible by, lower-level read only web application users. The endpoint can be used to export the appliance configuration, exposing sensitive information.