CVE-2018-16792
EUVD-2018-859205.12.2018, 22:29
SolarWinds SFTP/SCP server through 2018-09-10 is vulnerable to XXE via a world readable and writable configuration file that allows an attacker to exfiltrate data.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| solarwinds | sftp\/scp_server | 𝑥 ≤ 2018-09-10 |
𝑥
= Vulnerable software versions