CVE-2020-25260: Critical severity hyland onbase vulnerability
An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below and 20.3.10.1000 and below. It allows remote attackers to execute arbitrary code because of unsafe JSON deserialization.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-25260 vulnerability about?
It allows remote attackers to execute arbitrary code because of unsafe JSON deserialization in Hyland OnBase.
How severe is CVE-2020-25260?
The severity of CVE-2020-25260 is rated as critical with a CVSS score of 9.8.
What software versions are affected by CVE-2020-25260?
Hyland OnBase versions 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 and below, 20.3.10.1000 and below are affected by this vulnerability.
How can CVE-2020-25260 be exploited?
Remote attackers can exploit this vulnerability to execute arbitrary code using unsafe JSON deserialization in Hyland OnBase.
Is there a patch available for CVE-2020-25260?
Ensure to check with the vendor for any patches or updates to address CVE-2020-25260.