Vulnerabilities > CVE-2019-9944 - Unspecified vulnerability in Openmicroscopy Omero.Server 5.0.0/5.6.0

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
network
low complexity
openmicroscopy

Summary

In Open Microscopy Environment OMERO.server 5.0.0 through 5.6.0, the reading of files from imported image filesets may circumvent OMERO permissions restrictions. This occurs because the Bio-Formats feature allows an image file to have embedded pathnames.

Vulnerable Configurations

Part Description Count
Application
Openmicroscopy
2