CVE-2020-14505
CVE-2020-14505
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 7.0%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
15 jul 2020Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Advantech iView, versions 5.6 and prior, has an improper neutralization of special elements used in a command (“command injection”) vulnerability. Successful exploitation of this vulnerability may allow an attacker to send a HTTP GET or POST request that creates a command string without any validation. The attacker may then remotely execute code.
Productos afectados
n/a · Advantech iView¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →