Critical severity9.8NVD Advisory· Published May 11, 2022· Updated Jun 17, 2026
CVE-2022-29596
CVE-2022-29596
Description
MicroStrategy Enterprise Manager 2022 allows authentication bypass by triggering a login failure and then entering the Uid=/../../../../../../../../../../../windows/win.ini%00.jpg&Pwd=_any_password_&ConnMode=1&3054=Login substring for directory traversal.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- MicroStrategy/Enterprise Managerdescription
2022+ 1 more
- (no CPE)range: 2022
- cpe:2.3:a:microstrategy:enterprise_manager:2022:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/haxpunk1337/Microstrategy-Poc/blob/main/pocnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.