PT-2025-46664 · Solarwinds · N-Central
CVE-2025-11700
·
Publicado
2025-11-12
·
Atualizado
2026-04-14
CVSS v4.0
8.4
Alta
| Vetor | AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:L/SA:L |
Name of the Vulnerable Software and Affected Versions
N-central versions prior to 2025.4
Description
N-central versions prior to 2025.4 are susceptible to an XML External Entities injection that could lead to information disclosure. This issue allows for the potential exposure of sensitive data.
Recommendations
Update N-central to version 2025.4 or later.
Correção
XXE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
N-Central