Vulnerabilities > Openmicroscopy > Omero Server > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-06-17 CVE-2019-9944 Information Exposure vulnerability in Openmicroscopy Omero.Server 5.0.0/5.6.0
In Open Microscopy Environment OMERO.server 5.0.0 through 5.6.0, the reading of files from imported image filesets may circumvent OMERO permissions restrictions.
network
low complexity
openmicroscopy CWE-200
5.0
2020-06-17 CVE-2019-9943 Incorrect Default Permissions vulnerability in Openmicroscopy Omero.Server 5.6.0
In ome.services.graphs.GraphTraversal.findObjectDetails in Open Microscopy Environment OMERO.server 5.1.0 through 5.6.0, permissions on OMERO model objects may be circumvented during certain operations such as move and delete, because group permissions are mishandled.
5.0