CVE-2020-11527

An unauthenticated remote attacker can send a specially crafted URI to read arbitrary files

 

Vulnerability Details
ImpactCVSS V3 rating: NA
Reported onJanuary 2020
Reported byjacky.xing@dbappsecurity.com.cn
Fixed on28 January 2020
Affected BuildsBuilds till 124180
Fixed inBuild 124181
OverviewAn unauthenticated remote attacker can send a specially crafted URI to read arbitrary files.
Recommended FixUpgrade to Firewall Analyzer version 124181.

 

Description

An unauthenticated remote attacker can send a specially crafted URI to read arbitrary files

We recommend that you upgrade to Firewall Analyzer version 12.4.181 and above to fix this issue.

Source and Acknowledgements

Find out more about CVE-2020-11527 from the CVE dictionary.

Need Help?

For clarification or corrections please contact our support team or email us at fwanalyzer-support@manageengine.com

A single platter for comprehensive Network Security Device Management