← volver
CVE-2020-26868highCWE-767

ARC Informatique PcVue Access to Critical Private Variable via Public Method

21Vexday Risk Score

Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.

ssvc Trackcvss 7.5epss 2.1%
probabilidad de explotación
2.1%top 20% de las CVE
explotación observada
noninguna fuente lo reporta
ARC Informatique PcVue prior to version 12.0.17 is vulnerable to a denial-of-service attack due to the ability of an unauthorized user to modify information used to validate messages sent by legitimate web clients. This issue also affects third-party systems based on the Web Services Toolkit.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Productos afectados
ARC Informatique · PcVue