Security Advisory

CVE-2026-64881

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-21 20:09:50
Last updated 2026-07-24 03:55:55
Assigner tenable
CVSS score 8.8
State PUBLISHED

Description

The audit file upload handler does not sanitize filenames, allowing shell metacharacters to flow into system command execution. This input validation failure enables command injection when chained with a related vulnerability.