← Back

CVE-2020-24624

nvd nist
Published: Sep 23, 2020Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

Unathenticated directory traversal in the DownloadServlet class execute() method can lead to arbitrary file reads in HPE Pay Per Use (PPU) Utility Computing Service (UCS) Meter version 1.9.

Affected (1)

1 product
Utility Computing Service Meter
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.9

Timeline

No history available yet.