Dell AppSync Server, version 4.3 through 4.6, contains an XML External Entity Injection vulnerability. An adjacent high privileged attacker could potentially exploit this vulnerability, leading to information disclosure.
References
Configurations
History
No history.
Information
Published : 2024-10-09 07:15
Updated : 2024-10-17 14:30
NVD link : CVE-2024-39586
Mitre link : CVE-2024-39586
CVE.ORG link : CVE-2024-39586
JSON object : View
Products Affected
dell
- emc_appsync
CWE
CWE-611
Improper Restriction of XML External Entity Reference