Path Traversal vulnerability exists in Metasys Reporting Engine (MRE) Web Services which could allow a remote unauthenticated attacker to access and download arbitrary files from the system.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-29879 | Path Traversal vulnerability exists in Metasys Reporting Engine (MRE) Web Services which could allow a remote unauthenticated attacker to access and download arbitrary files from the system. |
Fixes
Solution
• Upgrade to MRE v2.2 or later. • Customers with licenses for MRE should contact their local branch office for remediation.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: jci
Published:
Updated: 2024-09-16T16:38:28.543Z
Reserved: 2020-02-18T00:00:00
Link: CVE-2020-9050
No data.
Status : Modified
Published: 2021-02-19T18:15:11.720
Modified: 2024-11-21T05:39:54.370
Link: CVE-2020-9050
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD