← volver
CVE-2020-8274

CVE-2020-8274

EPSS 2.0%CWE-94
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS EPSS 2.0%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
06 ene 2021Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Citrix Secure Mail for Android before 20.11.0 suffers from Improper Control of Generation of Code ('Code Injection') by allowing unauthenticated access to read data stored within Secure Mail. Note that a malicious app would need to be installed on the Android device or a threat actor would need to execute arbitrary code on the Android device.

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →