ZeroHour

CVE-2020-11847

CVSS 3.1
7.8 high
EPSS
<1%p23
Published
()
Modified
Description

SSH authenticated user when access the PAM server can execute an OS command to gain the full system access using bash. This issue affects Privileged Access Manager before 3.7.0.1.

Vendors
microfocus
Products
netiq privileged access manager
Weakness
CWE-78
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.