Beveiligingsadvies

CVE-2025-54834

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-07-31 17:26:04
Laatst bijgewerkt 2025-07-31 18:16:59
Toegewezen door cisa-cg
CVSS-score 6.9
Status PUBLISHED

Beschrijving

OPEXUS FOIAXpress Public Access Link (PAL) version v11.1.0 allows an unauthenticated, remote attacker to query the /App/CreateRequest.aspx endpoint to check for the existence of valid usernames. There are no rate-limiting mechanisms in place.