CVE-2019-10266: XEE
An issue was discovered in Ahsay Cloud Backup Suite before 8.1.1.50. When sending an out-of-bounds XML document to a URL, it is possible to read the file structure and even the content of files without authentication.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10266?
CVE-2019-10266 has a medium severity rating due to its ability to expose sensitive file structures and contents without authentication.
What vulnerabilities are associated with CVE-2019-10266?
CVE-2019-10266 allows attackers to exploit out-of-bounds XML documents to access files and data in Ahsay Cloud Backup Suite.
How do I fix CVE-2019-10266?
To fix CVE-2019-10266, upgrade to Ahsay Cloud Backup Suite version 8.1.1.50 or later.
What systems are affected by CVE-2019-10266?
CVE-2019-10266 affects Ahsay Cloud Backup Suite versions prior to 8.1.1.50.
What are the potential impacts of CVE-2019-10266?
CVE-2019-10266 can allow unauthorized access to a server's file structure and sensitive content, leading to data breaches.