What the vulnerability does

01Description

VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow input passed in the URL that is not properly verified before use, which may allow an attacker to read arbitrary files from local resources.

Key dates

02Disclosure timeline

April 3, 2020 CVE published
August 4, 2024 Record updated