CVE-2020-11527

An unauthenticated remote attacker can send a specially crafted URI to read arbitrary files

 

Vulnerability Details
Impact CVSS V3 rating: NA
Reported on January 2020
Reported by jacky.xing@dbappsecurity.com.cn
Fixed on 28 January 2020
Affected Builds Builds till 124180
Fixed in Build 124181
Overview An unauthenticated remote attacker can send a specially crafted URI to read arbitrary files.
Recommended Fix Upgrade to Firewall Analyzer version 124181.

 

Description

An unauthenticated remote attacker can send a specially crafted URI to read arbitrary files

We recommend that you upgrade to Firewall Analyzer version 12.4.181 and above to fix this issue.

Source and Acknowledgements

Find out more about CVE-2020-11527 from the CVE dictionary.

Need Help?

For clarification or corrections please contact our support team or email us at fwanalyzer-support@manageengine.com

A single platter for comprehensive Network Security Device Management