Lucene search

K
prionPRIOn knowledge basePRION:CVE-2020-36240
HistoryMar 01, 2021 - 5:15 p.m.

Design/Logic Flaw

2021-03-0117:15:00
PRIOn knowledge base
www.prio-n.com
3

AI Score

5.4

Confidence

High

EPSS

0.002

Percentile

56.4%

The ResourceDownloadRewriteRule class in Crowd before version 4.0.4, and from version 4.1.0 before 4.1.2 allowed unauthenticated remote attackers to read arbitrary files within WEB-INF and META-INF directories via an incorrect path access check.

AI Score

5.4

Confidence

High

EPSS

0.002

Percentile

56.4%

Related for PRION:CVE-2020-36240