CVE-2019-9944

Publication date

2020-06-17 16:10:25

Family

mitre

State

PUBLISHED

Description

In Open Microscopy Environment OMERO.server 5.0.0 through 5.6.0, the reading of files from imported image filesets may circumvent OMERO permissions restrictions. This occurs because the Bio-Formats feature allows an image file to have embedded pathnames.