Security Advisory

CVE-2026-32867

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-03-19 15:48:35
Last updated 2026-03-19 18:22:21
Assigner cisa-cg
CVSS score 5.4
State PUBLISHED

Description

OPEXUS eComplaint before version 10.1.0.0 allows an unauthenticated attacker to obtain or guess an existing case number and upload arbitrary files via 'Portal/EEOC/DocumentUploadPub.aspx'. Users would see these unexpected files in cases. Uploading a large number of files could consume storage.