CVE-2020-25247

An issue was discovered in Hyland OnBase through 18.0.0.32 and 19.x through 19.8.9.1000. Directory traversal exists for writing to files, as demonstrated by the FileName parameter.
References
Link Resource
https://seclists.org/fulldisclosure/2020/Sep/21 Mailing List Third Party Advisory
http://seclists.org/fulldisclosure/2020/Oct/9 Mailing List Third Party Advisory
Configurations

Configuration 1

cpe:2.3:a:hyland:onbase:*:*:*:*:*:*:*:*
cpe:2.3:a:hyland:onbase:*:*:*:*:*:*:*:*

Information

Published : 2020-09-11 03:15

Updated : 2022-12-06 09:30


NVD link : CVE-2020-25247

Mitre link : CVE-2020-25247

Products Affected
No products.
CWE