Security Advisory

CVE-2025-6076

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-08-02 02:15:31
Last updated 2025-11-03 20:06:46
Assigner certcc
CVSS score not scored
State PUBLISHED

Description

Partner Software's Partner Software application and Partner Web application do not sanitize files uploaded on the "reports" tab, allowing an authenticated attacker to upload a malicious file and compromise the device. By default, the software runs as SYSTEM, heightening the severity of the vulnerability.