CVE-2022-47880: Jedox

Medium severity, CVSS 5.3. EPSS: 2.9% chance of exploitation in the next 30 days.

An Information disclosure vulnerability in /be/rpc.php in Jedox GmbH Jedox 2020.2.5 allow remote, authenticated users with permissions to modify database connections to disclose a connections' cleartext password via the 'test connection' function.

Affected products

  • Jedox Jedox: version 2020.2.5 only
  • Jedox Jedox Cloud: affected versions not specified

Published 2023-05-12. Last modified 2026-07-09.