← Back to CVE List

CVE-2025-24521

Published: 2025-03-05T16:15Z
Last Modified: 2025-03-05T16:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
External XML entity injection allows arbitrary download of files. The score without least privilege principle violation is as calculated below. In combination with other issues it may facilitate further compromise of the device. Remediation in Version 6.8.0, release date: 01-Mar-25. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt