Security Advisory

CVE-2020-5519

9.8
CRITICAL

Vulnerability Description

The WebAdmin Console in OpenLiteSpeed before v1.6.5 does not strictly check request URLs, as demonstrated by the "Server Configuration > External App" screen.
Published Date January 6, 2020
Official Source NIST NVD Advisory