#VU46715 Improper Output Neutralization for Logs in OnBase - CVE-2020-25255
Published: September 11, 2020 / Updated: September 15, 2020
OnBase
Hyland Software
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to the affected software fails to properly sanitize data before writing it to the logs. A remote attacker can create arbitrary log entries on behalf of any user, with or without authenticating and cause a denial of service conditon on the target system.