Microstrategy Web 10.4 exposes the JVM configuration, CPU architecture, installation folder, and other information through the URL /MicroStrategyWS/happyaxis.jsp. An attacker could use this vulnerability to learn more about the environment the application is running in. This issue has been mitigated in all versions of the product 11.0 and higher.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-04-02T15:01:45

Updated: 2024-08-04T11:28:13.908Z

Reserved: 2020-04-01T00:00:00

Link: CVE-2020-11450

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-04-02T15:15:17.547

Modified: 2022-04-22T19:07:15.843

Link: CVE-2020-11450

cve-icon Redhat

No data.