Xythos Enterprise Document Manager (XEDM), Digital Locker (XDL), and possibly WebFile Server before 6.0.46.1 allow remote authenticated users to associate arbitrary Content-Type HTTP headers with documents, which might facilitate malware distribution.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Digital_locker | Xythos | * | 6.0.46.0 (including) |
Enterprise_document_manager | Xythos | * | 6.0.46.0 (including) |
Webfile_server | Xythos | * | 6.0.46.0 (including) |