Critical severity9.1NVD Advisory· Published May 7, 2020· Updated Jun 17, 2026
CVE-2020-11431
CVE-2020-11431
Description
The documentation component in i-net Clear Reports 16.0 to 19.2, HelpDesk 8.0 to 8.3, and PDFC 4.3 to 6.2 allows a remote unauthenticated attacker to read arbitrary system files and directories on the target server via Directory Traversal.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7cpe:2.3:a:inetsoftware:clear_reports:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:inetsoftware:clear_reports:*:*:*:*:*:*:*:*range: >=16.0,<=19.2
- (no CPE)range: 16.0 to 19.2
cpe:2.3:a:inetsoftware:helpdesk:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:inetsoftware:helpdesk:*:*:*:*:*:*:*:*range: >=8.0,<=8.3
- (no CPE)range: 8.0 to 8.3
cpe:2.3:a:inetsoftware:pdfc:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:inetsoftware:pdfc:*:*:*:*:*:*:*:*range: >=4.3,<=6.2
- (no CPE)range: 4.3 to 6.2
- i-net/Clear Reportsdescription
Patches
Vulnerability mechanics
References
4- www.inetsoftware.de/support/news/i-net-clear-reports-security-advisory-2020-apr-06nvdPatchVendor Advisory
- www.inetsoftware.de/support/news/i-net-pdfc-security-advisory-2020-apr-06nvdPatchVendor Advisory
- www.inetsoftware.de/documentation/clear-reports/release-notes/releases/changes_19.2nvdRelease NotesVendor Advisory
- www.inetsoftware.de/support/news/i-net-helpdesk-sicherheitsankuendigung-2020-apr-06nvdVendor Advisory
News mentions
0No linked articles in our index yet.