Impact
Bold Reports Standalone Report Designer versions before 14.1.12 contain a missing file‑path validation in the font processing feature that allows unauthenticated attackers to read any file on the server by supplying a crafted request. This missing validation enables path‑traversal attacks that can disclose sensitive files such as authentication credentials and other confidential data, effectively giving attackers full uncontrolled access to the application and its underlying file system.
Affected Systems
The vulnerable component is the DataHub module of Bold Reports Standalone Report Designer, introduced in version 6.3. All releases of the product from 6.3 up to and including 14.1.11 are affected. Versions prior to 6.3 do not contain the DataHub module and are therefore not vulnerable.
Risk and Exploitability
With a CVSS score of 9.3 the vulnerability is considered critical. While the EPSS score is a very low probability of exploitation, the path‑traversal flaw can be triggered remotely through a network‑facing request without authentication, and the flaw is not listed in CISA’s KEV catalog. Attackers could hijack the application after reading confidential files.
OpenCVE Enrichment