← back
CVE-2024-29010

CVE-2024-29010

CVSS 7.1 HIGHEPSS 0.6%CWE-611
The XML document processed in the GMS ECM URL endpoint is vulnerable to XML external entity (XXE) injection, potentially resulting in the disclosure of sensitive information. This issue affects GMS: 9.3.4 and earlier versions.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N
Affected products
SonicWall · GMS

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →