ZeroHour

CVE-2020-26506

PoC
CVSS 3.1
4.3 medium
EPSS
<1%p55
Published
()
Modified
Description

An Authorization Bypass vulnerability in the Marmind web application with version 4.1.141.0 allows users with lower privileges to gain control to files uploaded by administrative users. The accessed files were not visible by the low privileged users in the web GUI.

Vendors
marmind
Products
marmind
Weakness
CWE-670, CWE-863
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.