CRITICAL
MicroStrategy Enterprise Manager 2022 allows authentication bypass by triggering a login failure and then entering the Uid=/../../../../../../../../../../../windows/win.ini%00.jpg&Pwd=_any_password_&ConnMode=1&3054=Login substring for directory traversal
Published May 11, 2022
9.8
CRITICALCVSS 3.1
EPSS 2.16%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.