CVE Vulnerabilities

CVE-2020-25250

Published: Sep 11, 2020 | Modified: Jun 30, 2022
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below. Client applications can write arbitrary data to the server logs.

Affected Software

Name Vendor Start Version End Version
Onbase Hyland * 16.0.2.83 (including)
Onbase Hyland 17.0.0.0 (including) 17.0.2.109 (including)
Onbase Hyland 18.0.0.0 (including) 18.0.0.37 (including)
Onbase Hyland 19.0.0.0 (including) 19.8.16.1000 (including)
Onbase Hyland 20.0.0.0 (including) 20.3.10.1000 (including)

References