ZeroHour

CVE-2020-12493

CVSS 3.1
10.0 critical
EPSS
1%p71
Published
()
Modified
Description

An open port used for debugging in SWARCOs CPU LS4000 Series with versions starting with G4... grants root access to the device without access control via network. A malicious user could use this vulnerability to get access to the device and disturb operations with connected devices.

Vendors
swarco
Products
cpu ls4000 firmware
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

In the news