CVE-2020-24984: Quadbase Espressreports Es

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

An issue was discovered in Quadbase EspressReports ES 7 Update 9. It allows CSRF, whereby an attacker may be able to trick an authenticated admin level user into uploading malicious files to the web server.

Affected products

  • Quadbase Espressreports Es: version 7 only

Published 2021-03-11. Last modified 2026-06-17.