CVE-2024-38653

Publication date

2024-08-14 02:38:00

Family

hackerone

State

PUBLISHED

Description

XXE in SmartDeviceServer in Ivanti Avalanche 6.3.1 allows a remote unauthenticated attacker to read arbitrary files on the server.