Логотип exploitDog
bind:CVE-2020-11452
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-11452

Количество 2

Количество 2

nvd логотип

CVE-2020-11452

почти 6 лет назад

Microstrategy Web 10.4 includes functionality to allow users to import files or data from external resources such as URLs or databases. By providing an external URL under attacker control, it's possible to send requests to external resources (aka SSRF) or leak files from the local system using the file:// stream wrapper.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-8qgf-rx2m-g577

больше 3 лет назад

Microstrategy Web 10.4 includes functionality to allow users to import files or data from external resources such as URLs or databases. By providing an external URL under attacker control, it's possible to send requests to external resources (aka SSRF) or leak files from the local system using the file:// stream wrapper.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-11452

Microstrategy Web 10.4 includes functionality to allow users to import files or data from external resources such as URLs or databases. By providing an external URL under attacker control, it's possible to send requests to external resources (aka SSRF) or leak files from the local system using the file:// stream wrapper.

CVSS3: 4.3
0%
Низкий
почти 6 лет назад
github логотип
GHSA-8qgf-rx2m-g577

Microstrategy Web 10.4 includes functionality to allow users to import files or data from external resources such as URLs or databases. By providing an external URL under attacker control, it's possible to send requests to external resources (aka SSRF) or leak files from the local system using the file:// stream wrapper.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу