CVE-2020-22623

HIGH EXPLOITED

Jinfornet Jreport <15.6 - Info Disclosure

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2020-22623 has been observed exploited in the wild (reported by VulnCheck KEV).

Description

Directory traversal vulnerability in Jinfornet Jreport 15.6 allows unauthenticated attackers to gain sensitive information.

Scores

CVSS v3 7.5
EPSS 0.0112
EPSS Percentile 62.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

VulnCheck KEV 2025-11-10
CWE
CWE-22
Status published
Products (1)
insightsoftware/jreport 15.6
Published Jul 27, 2023
Tracked Since Feb 18, 2026