CVE-2019-14362

Publication date

2019-07-28 17:26:06

Family

mitre

State

PUBLISHED

Description

Openbravo ERP before 3.0PR19Q1.3 is affected by Directory Traversal. This vulnerability could allow remote authenticated attackers to replace a file on the server via the getAttachmentDirectoryForNewAttachment inpKey value.