VYPR

T24

by Termenos

CVEs (1)

  • CVE-2019-14251HigDec 9, 2019
    risk 0.49cvss 7.5epss 0.08

    An issue was discovered in T24 in TEMENOS Channels R15.01. The login page presents JavaScript functions to access a document on the server once successfully authenticated. However, an attacker can leverage downloadDocServer() to traverse the file system and access files or…