May 2, 2023, 8:15 p.m. |

National Vulnerability Database web.nvd.nist.gov

Incorrect input validation for the default-storage-path in the settings page in Jedox 2020.2.5 allows remote, authenticated users to specify the location as Webroot directory. Consecutive file uploads can lead to the execution of arbitrary code.

code cve default directory file input input validation location path settings storage validation webroot

Security Engineer II, Engineering

@ Trail of Bits | Worldwide - Remote

Technical Support Engineer - Network Security

@ Ivanti | Bengaluru, India (Bagmane)

Senior Security Analyst- Container Threat and Vulnerability Management

@ Oracle | Philippines

Cybersecurity Strategy & Operations Officer (m/f/d)

@ Nordex Group | Madrid, ES, 28001

Security Administrator

@ ManTech | 201DT - 2251 Corp Park Dr, Herndon, VA

Cybersecurity Specialist

@ GFT Technologies | Sant Cugat del Vallès, B, ES, 08174