CVE-2020-11595
PoC —CVSS 3.1
7.5 high
EPSS
1%p67
Published
()
Modified
Description
An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request and obtain the upload folder path that includes the hostname in a UNC path.
- Vendors
- cipplanner
- Products
- cipace
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.