What the vulnerability does

01Description

A vulnerability has been identified in XHQ (All Versions < 6.1). The web interface could allow attackers to traverse through the file system of the server based by sending specially crafted packets over the network without authentication.

Key dates

02Disclosure timeline

December 14, 2020 CVE published
August 5, 2024 Record updated