← back
CVE-2020-12000

CVE-2020-12000

EPSS 1.5%CWE-502
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 1.5%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
09 Jun 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
The affected product is vulnerable to the handling of serialized data. The issue results from the lack of proper validation of user-supplied data, which can result in deserialization of untrusted data on the Ignition 8 Gateway (versions prior to 8.0.10) and Ignition 7 Gateway (versions prior to 7.9.14), allowing an attacker to obtain sensitive information.
Affected products
n/a · Ignition 8 Gateway

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →