ZeroHour

CVE-2020-15774

CVSS 3.1
6.8 medium
EPSS
<1%p27
Published
()
Modified
Description

An issue was discovered in Gradle Enterprise 2018.5 - 2020.2.4. An attacker with physical access to the browser of a user who has recently logged in to Gradle Enterprise and since closed their browser could reopen their browser to access Gradle Enterprise as that user.

Vendors
gradle
Products
enterprise
Weakness
CWE-613
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.