Security Advisory

CVE-2026-22235

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-01-08 17:13:24
Last updated 2026-01-08 18:19:28
Assigner cisa-cg
State PUBLISHED

Description

OPEXUS eComplaint before version 9.0.45.0 allows an attacker to visit the the DocumentOpen.aspx endpoint, iterate through predictable values of chargeNumber, and download any uploaded files.