ZeroHour

CVE-2024-39586

CVSS 3.1
4.3 medium
EPSS
<1%p11
Published
()
Modified
Description

Dell AppSync Server, version 4.3 through 4.6, contains an XML External Entity Injection vulnerability. An adjacent high privileged attacker could potentially exploit this vulnerability, leading to information disclosure.

Vendors
dell
Products
emc appsync
Weakness
CWE-611
Vector
CVSS:3.1/AV:A/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.