CVE-2024-39586

Dell AppSync Server, version 4.3 through 4.6, contains an XML External Entity Injection vulnerability. An adjacent high privileged attacker could potentially exploit this vulnerability, leading to information disclosure.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:emc_appsync:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-10-09 07:15

Updated : 2024-10-17 14:30


NVD link : CVE-2024-39586

Mitre link : CVE-2024-39586

CVE.ORG link : CVE-2024-39586


JSON object : View

Products Affected

dell

  • emc_appsync
CWE
CWE-611

Improper Restriction of XML External Entity Reference