Beveiligingsadvies

CVE-2025-67810

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-01-09 00:00:00
Laatst bijgewerkt 2026-01-09 21:26:03
Toegewezen door mitre
CVSS-score 6.5
Status PUBLISHED

Beschrijving

In Area9 Rhapsode 1.47.3, an authenticated attacker can exploit the operation, url, and filename parameters via POST request to read arbitrary files from the server filesystem. Fixed in 1.47.4 (#7254) and further versions.