Security Advisory

CVE-2025-54768

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-07-28 23:31:09
Last updated 2025-11-03 20:06:36
Assigner KoreLogic
State PUBLISHED

Description

An API endpoint that should be limited to web application administrators is hidden from, but accessible by, lower-level read only web application users. The endpoint can be used to download logs from the appliance configuration, exposing sensitive information.