CVE-2020-14864—Oracle Business Intelligence Enterprise Edition Path Transversal
PUBLISHEDvulnerability record
2022-01-18 · last modified June 21, 2025
Metadata
Vulnerability Name
Oracle Business Intelligence Enterprise Edition Path Transversal
Description
Path traversal vulnerability, where an attacker can target the preview FilePath parameter of the getPreviewImage function to get access to arbitrary system file.
Known To Be Used in Ransomware Campaigns?
Action
Apply updates per vendor instructions.