CVE-2020-7561
CVE-2020-7561
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 3.0%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
19 Nov 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A CWE-306: Missing Authentication for Critical Function vulnerability exists in Easergy T300 (with firmware 2.7 and older) that could cause a wide range of problems, including information exposure, denial of service, and command execution when access to a resource from an attacker is not restricted or incorrectly restricted.
Affected products
n/a · Easergy T300 with firmware 2.7 and olderWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →