Svi
Pretraži prema proizvođaču
Pretraži prema CWE oznaci
O usluzi
Pretplate
Jezik
hr
en
CVE-2020-16245 - CERT CVE
CVE-2020-16245
ID
CVE-2020-16245
Sažetak
Advantech iView, Versions 5.7 and prior. The affected product is vulnerable to path traversal vulnerabilities that could allow an attacker to create/download arbitrary files, limit system availability, and remotely execute code.
Reference
https://us-cert.cisa.gov/ics/advisories/icsa-20-238-01
https://www.zerodayinitiative.com/advisories/ZDI-20-1084/
https://www.zerodayinitiative.com/advisories/ZDI-20-1085/
https://www.zerodayinitiative.com/advisories/ZDI-20-1086/
https://www.zerodayinitiative.com/advisories/ZDI-20-1087/
https://www.zerodayinitiative.com/advisories/ZDI-20-1088/
https://www.zerodayinitiative.com/advisories/ZDI-20-1089/
https://www.zerodayinitiative.com/advisories/ZDI-20-1090/
https://www.zerodayinitiative.com/advisories/ZDI-20-1091/
https://www.zerodayinitiative.com/advisories/ZDI-20-1092/
CVSS
Base:
7.5
Impact:
6.4
Exploitability:
10.0
Pristup
Vektor
Složenost
Autentikacija
NETWORK
LOW
NONE
Impact
Povjerljivost
Cjelovitost
Dostupnost
PARTIAL
PARTIAL
PARTIAL
CVSS vektor
AV:N/AC:L/Au:N/C:P/I:P/A:P
Zadnje važnije ažuriranje
31-08-2020 - 17:30
Objavljeno
25-08-2020 - 19:15