7.5

CVE-2020-25250

An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below. Client applications can write arbitrary data to the server logs.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hyland ≫ Onbase Version <= 16.0.2.83
Hyland ≫ Onbase Version >= 17.0.0.0 <= 17.0.2.109
Hyland ≫ Onbase Version >= 18.0.0.0 <= 18.0.0.37
Hyland ≫ Onbase Version >= 19.0.0.0 <= 19.8.16.1000
Hyland ≫ Onbase Version >= 20.0.0.0 <= 20.3.10.1000
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.91% 0.552
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://seclists.org/fulldisclosure/2020/Sep/8
Third Party Advisory
Mailing List