← back
CVE-2020-14505

CVE-2020-14505

EPSS 7.0%CWE-77
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 7.0%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
15 Jul 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Advantech iView, versions 5.6 and prior, has an improper neutralization of special elements used in a command (“command injection”) vulnerability. Successful exploitation of this vulnerability may allow an attacker to send a HTTP GET or POST request that creates a command string without any validation. The attacker may then remotely execute code.
Affected products
n/a · Advantech iView

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →