Description
An arbitrary file read vulnerability in ureport v2.2.9 allows a remote attacker to arbitrarily read files on the server by inserting a crafted path.
Remediation
References
https://github.com/h00klod0er/ureport2-vuln/
Related Vulnerabilities
CVE-2020-13943 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core
CVE-2020-1948 Vulnerability in maven package org.apache.dubbo:dubbo-common
CVE-2020-28469 Vulnerability in maven package org.webjars.bowergithub.es128:glob-parent
CVE-2020-7641 Vulnerability in npm package grunt-util-property
CVE-2020-7684 Vulnerability in npm package rollup-plugin-serve