CVE-2020-11491
18Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 7.9%
from disclosure to weapon8 days
Published on NVDApr 2
metasploit+8d
exploitation probability
7.9%top 6% of all CVEs
observed exploitation
nono source reports it
Monitoring::Logs in Zen Load Balancer 3.10.1 allows remote authenticated admins to conduct absolute path traversal attacks, as demonstrated by a filelog=/etc/shadow request to index.cgi.
Affected products
n/a · n/a