Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An XML external entities (XXE) injection vulnerability in the /init API endpoint in Exagid EX10 before 6.4.0 P20, 7.0.1 P12, and 7.2.0 P08 allows an authenticated, unprivileged attacker to achieve information disclosure and privilege escalation via a crafted ISys XML message.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Exagrid EX10 安全漏洞
Vulnerability Description
Exagrid EX10是美国Exagrid公司的一款备份存储服务器。 Exagrid EX10 7.0.1p02版本存在安全漏洞,该漏洞源于/init API端点存在XML外部实体注入,可能导致信息泄露和权限提升。
CVSS Information
N/A
Vulnerability Type
N/A