PT-2025-46664 · Solarwinds · N-Central

CVE-2025-11700

·

Publicado

2025-11-12

·

Atualizado

2026-04-14

CVSS v4.0

8.4

Alta

VetorAV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:L/SA:L
Name of the Vulnerable Software and Affected Versions N-central versions prior to 2025.4
Description N-central versions prior to 2025.4 are susceptible to an XML External Entities injection that could lead to information disclosure. This issue allows for the potential exposure of sensitive data.
Recommendations Update N-central to version 2025.4 or later.

Correção

XXE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-11700

Produtos afetados

N-Central