CVE-2019-10266: Ahsay Cloud Backup Suite
High severity, CVSS 7.5. EPSS: 13.3% chance of exploitation in the next 30 days.
An issue was discovered in Ahsay Cloud Backup Suite before 8.1.1.50. When sending an out-of-bounds XML document to a URL, it is possible to read the file structure and even the content of files without authentication.
Affected products
- Ahsay Cloud Backup Suite: from 7.7.0.0, before 8.1.1.50 (fixed in 8.1.1.50)
Published 2019-07-26. Last modified 2026-06-17.