mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-05 19:06:36 +02:00
19 lines
776 B
Markdown
19 lines
776 B
Markdown
### [CVE-2020-25248](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-25248)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
An issue was discovered in Hyland OnBase through 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below. Directory traversal exists for reading files, as demonstrated by the FileName parameter.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- http://seclists.org/fulldisclosure/2020/Oct/9
|
|
- https://seclists.org/fulldisclosure/2020/Oct/9
|
|
|
|
#### Github
|
|
- https://github.com/404notf0und/CVE-Flow
|
|
|