GaussDB 200 with version of 6.5.1 have a path traversal vulnerability. Due to insufficient input path validation, an authenticated attacker can traverse directories and download files to a specific directory. Successful exploit may cause information leakage.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: huawei
Published: 2020-02-17T20:55:38
Updated: 2024-08-04T06:53:58.553Z
Reserved: 2019-11-29T00:00:00
Link: CVE-2020-1853
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-02-17T21:15:13.053
Modified: 2024-11-21T05:11:29.350
Link: CVE-2020-1853
Redhat
No data.