ZeroHour

CVE-2020-25490

PoC
CVSS 3.1
7.3 high
EPSS
1%p65
Published
()
Modified
Description

Lack of cryptographic signature verification in the Sqreen PHP agent daemon before 1.16.0 makes it easier for remote attackers to inject rules for execution inside the virtual machine.

Vendors
sqreen
Products
php microagent
Weakness
CWE-347
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.