CVE-2020-11596: Cipplanner Cipace
High severity, CVSS 7.5. EPSS: 1.8% chance of exploitation in the next 30 days.
A Directory Traversal issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make HTTP GET requests to a certain URL and obtain information about what files and directories reside on the server.
Affected products
- Cipplanner Cipace: before 9.1 (fixed in 9.1)
Published 2020-04-06. Last modified 2026-06-17.