CVE-2022-47878
02.05.2023, 20:15
Incorrect input validation for the default-storage-path in the settings page in Jedox 2020.2.5 allows remote, authenticated users to specify the location as Webroot directory. Consecutive file uploads can lead to the execution of arbitrary code.Enginsight
Vendor | Product | Version |
---|---|---|
jedox | jedox | 2020.2.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References