CVE-2018-18809 | TIBCO JasperReports Library Default Server path traversal (Advisory 154406 / BID-107351)
A vulnerability was found in TIBCO JasperReports Library, JasperReports Library Community Edition, JasperReports Library for ActiveMatrix BPM, JasperReports Server, JasperReports Server Community Edition, JasperReports Server for ActiveMatrix BPM and Jaspersoft for AWS with Multi-Tenancy. It has been classified as critical. Affected is an unknown function of the component Default Server. The manipulation leads to path traversal.
This vulnerability is traded as CVE-2018-18809. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.