ZeroHour

CVE-2020-3925

CVSS 3.1
8.8 high
EPSS
3%p85
Published
()
Modified
Description

A Remote Code Execution(RCE) vulnerability exists in some designated applications in ServiSign security plugin, as long as the interface is captured, attackers are able to launch RCE and executes arbitrary command on target system via malicious crafted scripts.

Vendors
changingtec
Products
servisign
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.