CVE-2020-25490
PoC —CVSS 3.1
7.3 high
EPSS
1%p65
Published
()
Modified
Description
Lack of cryptographic signature verification in the Sqreen PHP agent daemon before 1.16.0 makes it easier for remote attackers to inject rules for execution inside the virtual machine.
- Vendors
- sqreen
- Products
- php microagent
- Weakness
- CWE-347
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
In the news0 stories
No ingested article mentions this CVE yet.