Arbitrary Code Execution Vulnerability in UReport 2.2.9

Arbitrary Code Execution Vulnerability in UReport 2.2.9

CVE-2020-21124 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

UReport 2.2.9 allows attackers to execute arbitrary code due to a lack of access control to the designer page.

Learn more about our Web Application Penetration Testing UK.