Beveiligingsadvies

CVE-2026-27553

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-09-16 07:49:48
Laatst bijgewerkt 2026-09-16 07:49:48
Toegewezen door CERTVDE
CVSS-score 6.5
Status PUBLISHED

Beschrijving

A low-privileged remote attacker can manipulate the schema path parameter in the /index.php/diagnostics_tab/ajax_diag_table_rows endpoint using a valid user cookie allowing disclosure of all user password hashes.