ZeroHour

CVE-2020-7008

CVSS 3.1
7.5 high
EPSS
2%p79
Published
()
Modified
Description

VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow input passed in the URL that is not properly verified before use, which may allow an attacker to read arbitrary files from local resources.

Vendors
visam
Products
vbase editor, vbase web-remote
Weakness
CWE-23, CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.