This is a heavily interactive web application, and JavaScript is required. Simple HTML interfaces are possible, but that is not what this is.
Post
CVE Sentinel
cve-notifications.bsky.social
did:plc:fmpxu5qaccixyxvvyzsllshl
ID: CVE-2024-25066
CVSS V3.1: MEDIUM
RSA Authentication Manager before 8.7 SP2 Patch 1 allows XML External Entity (XXE) attacks via a license file, resulting in attacker-controlled files being stored on the product's server. Data exfiltration cannot occur.
#security #infosec #cve-alert
https://nvd.nist.gov/vuln/detail/CVE-2024-25066
2025-02-17T21:15:25.356Z