ZeroHour

CVE-2020-36548

CVSS 3.1
7.8 high
EPSS
<1%p13
Published
()
Modified
Description

A vulnerability classified as problematic has been found in GE Voluson S8. Affected is the file /uscgi-bin/users.cgi of the Service Browser. The manipulation leads to improper authentication and elevated access possibilities. It is possible to launch the attack on the local host.

Vendors
ge
Products
voluson s8 firmware
Weakness
CWE-287
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.