← Back

CVE-2024-39586

nvd nist
Published: Oct 9, 2024Modified: Oct 17, 2024

JSON object

Loading...
4.3
Vector
CVSS:3.1/AV:A/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N
Exploitability: 0.7 / Impact: 3.6
Source: NVD

Description

Dell AppSync Server, version 4.3 through 4.6, contains an XML External Entity Injection vulnerability. An adjacent high privileged attacker could potentially exploit this vulnerability, leading to information disclosure.

Affected (1)

Products: Dell: Emc Appsync
1 product
Emc Appsync
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 4.3.0.0 to 4.6.0.3

Timeline

No history available yet.