Security Advisory

CVE-2020-14478

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-02-24 18:27:13
Last updated 2025-04-17 18:48:04
Assigner icscert
State PUBLISHED

Description

A local, authenticated attacker could use an XML External Entity (XXE) attack to exploit weakly configured XML files to access local or remote content. A successful exploit could potentially cause a denial-of-service condition and allow the attacker to arbitrarily read any local file via system-level services.