Back to Database
Status published
High
CVE-2020-25247
An issue was discovered in Hyland OnBase through 18.0.0.32 and...
Vulnerability Description
An issue was discovered in Hyland OnBase through 18.0.0.32 and 19.x through 19.8.9.1000. Directory traversal exists for writing to files, as demonstrated by the FileName parameter.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-25247
Credits & Attribution
No credits recorded in the NVD database.
References
More from hyland
View All →CVE-2022-23342
The Hyland Onbase Application Server releases prior to 20.3.58.1000 and...
Medium
5.3
CVE-2020-25260
An issue was discovered in Hyland OnBase 16.0.2.83 and below,...
Critical
9.8
CVE-2020-25259
An issue was discovered in Hyland OnBase 16.0.2.83 and below,...
Critical
9.8
CVE-2020-25258
An issue was discovered in Hyland OnBase 16.0.2.83 and below,...
Critical
9.8
CVE-2020-25257
An issue was discovered in Hyland OnBase 16.0.2.83 and below,...
Critical
9.8
Affected Vendor
hyland
View all reports →Affected Software
onbase
Vulnerable Versions:
0, 19.0.0.0
Timeline
Official Publish:
September 11th, 2020
Last Modified:
August 4th, 2024
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.