CVE-2020-17385: Cellopoint Cellos

High severity, CVSS 7.5. EPSS: 1.6% chance of exploitation in the next 30 days.

Cellopoint CelloOS v4.1.10 Build 20190922 does not validate URL inputted properly, which allows unauthorized user to launch Path Traversal attack and access arbitrate file on the system.

Affected products

Published 2020-08-25. Last modified 2026-06-17.