Security Advisory

CVE-2020-1853

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-02-17 20:55:38
Last updated 2024-08-04 06:53:58
Assigner huawei
State PUBLISHED

Description

GaussDB 200 with version of 6.5.1 have a path traversal vulnerability. Due to insufficient input path validation, an authenticated attacker can traverse directories and download files to a specific directory. Successful exploit may cause information leakage.