Vulnerabilities > Microstrategy > Microstrategy > 2020

DATE CVE VULNERABILITY TITLE RISK
2020-11-24 CVE-2020-24815 Server-Side Request Forgery (SSRF) vulnerability in Microstrategy 10.4/2019/2020
A Server-Side Request Forgery (SSRF) affecting the PDF generation in MicroStrategy 10.4, 2019 before Update 6, and 2020 before Update 2 allows authenticated users to access the content of internal network resources or leak files from the local system via HTML containers embedded in a dossier/dashboard document.
network
low complexity
microstrategy CWE-918
4.0