CVE

CVE-2020-26178

CVE-2020-26178

In tangro Business Workflow before 1.18.1, knowing an attachment ID, it is possible to download workitem attachments without being authenticated.

Source: CVE-2020-26178

Exit mobile version