CVE-2024-39586
4.3
Vector
CVSS:3.1/AV:A/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N
Exploitability: 0.7 / Impact: 3.6
Source: NVD
Description
Dell AppSync Server, version 4.3 through 4.6, contains an XML External Entity Injection vulnerability. An adjacent high privileged attacker could potentially exploit this vulnerability, leading to information disclosure.
Affected (1)
Products: Dell: Emc Appsync
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 4.3.0.0 to 4.6.0.3 |
References (1)
Source: security_alert@emc.com
Vendor Advisory
Timeline
No history available yet.