CVE-2020-28215
CVE-2020-28215
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 2.2%KEV nãoPoC —Patch —
Lifecycle
11 Dec 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A CWE-862: Missing Authorization vulnerability exists in Easergy T300 (firmware 2.7 and older), that could cause a wide range of problems, including information exposures, denial of service, and arbitrary code execution when access control checks are not applied consistently.
Affected products
n/a · Easergy T300 (firmware 2.7 and older)Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →