CVE-2020-24985
15.03.2021, 18:15
An issue was discovered in Quadbase EspressReports ES 7 Update 9. An authenticated user is able to navigate to the MenuPage section of the application, and change the frmsrc parameter value to retrieve and execute external files or payloads.Enginsight
| Vendor | Product | Version |
|---|---|---|
| quadbase | espressdashboard | 7.0:update9 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration