CVE-2020-10629

Publication date

2020-04-09 13:12:17

Family

icscert

State

PUBLISHED

Description

WebAccess/NMS (versions prior to 3.0.2) does not sanitize XML input. Specially crafted XML input could allow an attacker to read sensitive files.