← Back

CVE-2020-24625

nvd nist
Published: Sep 23, 2020Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

Unathenticated directory traversal in the ReceiverServlet class doGet() method can lead to arbitrary file reads in HPE Pay Per Use (PPU) Utility Computing Service (UCS) Meter version 1.9.

Affected (1)

1 product
Utility Computing Service Meter
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.9

Timeline

No history available yet.