Security Advisory

CVE-2018-5789

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-02-05 04:00:00
Last updated 2024-08-05 05:47:55
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is a Remote, Unauthenticated XML Entity Expansion Denial of Service on the WiNG Access Point / Controller via crafted XML entities to the Web User Interface.