CVE-2020-14864: Oracle Business Intelligence Enterprise Edition Path
Oracle Business Intelligence Enterprise Edition Path Transversal. Path traversal vulnerability, where an attacker can target the preview FilePath parameter of the getPreviewImage function to get access to arbitrary system file.
- CISA KEV-listed (remediation due 2022-07-18)
- EPSS 94.0% (99.9% percentile)