Security Advisory

CVE-2026-64878

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-21 19:41:36
Last updated 2026-07-24 03:55:54
Assigner tenable
CVSS score 9.9
State PUBLISHED

Description

Unvalidated input in asset filter parameters allows shell metacharacters to escape command argument handling, resulting in remote code execution as a low-privileged OS user via the Analysis REST endpoint.