CVE-2020-11450
02.04.2020, 15:15
Microstrategy Web 10.4 exposes the JVM configuration, CPU architecture, installation folder, and other information through the URL /MicroStrategyWS/happyaxis.jsp. An attacker could use this vulnerability to learn more about the environment the application is running in. This issue has been mitigated in all versions of the product 11.0 and higher.Enginsight
| Vendor | Product | Version |
|---|---|---|
| microstrategy | microstrategy_web | 𝑥 < 11.0 |
𝑥
= Vulnerable software versions
References