Unauthenticated Directory Traversal Vulnerability in HPE Pay Per Use (PPU) UCS Meter 1.9

Unauthenticated Directory Traversal Vulnerability in HPE Pay Per Use (PPU) UCS Meter 1.9

CVE-2020-24624 · HIGH Severity


Unathenticated directory traversal in the DownloadServlet class execute() method can lead to arbitrary file reads in HPE Pay Per Use (PPU) Utility Computing Service (UCS) Meter version 1.9.

Learn more about our Web Application Penetration Testing UK.