CVE-2020-3920
—CVSS 3.1
8.1 high
EPSS
<1%p56
Published
()
Modified
Description
UltraLog Express device management interface does not properly perform access authentication in some specific pages/functions. Any user can access the privileged page to manage accounts through specific system directory.
- Vendors
- unisoon
- Products
- ultralog express firmware
- Weakness
- CWE-306
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
In the news0 stories
No ingested article mentions this CVE yet.