← back
CVE-2020-12493

Critical Vulnerability in SWARCO CPU LS4000

CVSS 10 CRITICALEPSS 1.4%CWE-284
Vexday Risk Score
28Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 10EPSS 1.4%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
29 May 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
An open port used for debugging in SWARCOs CPU LS4000 Series with versions starting with G4... grants root access to the device without access control via network. A malicious user could use this vulnerability to get access to the device and disturb operations with connected devices.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Affected products
SWARCO · CPU LS4000

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →