ZeroHour

CVE-2019-9944

CVSS 3.1
7.5 high
EPSS
1%p63
Published
()
Modified
Description

In Open Microscopy Environment OMERO.server 5.0.0 through 5.6.0, the reading of files from imported image filesets may circumvent OMERO permissions restrictions. This occurs because the Bio-Formats feature allows an image file to have embedded pathnames.

Vendors
openmicroscopy
Products
omero.server
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.