ZeroHour

CVE-2020-3935

CVSS 3.1
7.5 high
EPSS
<1%p58
Published
()
Modified
Description

TAIWAN SECOM CO., LTD., a Door Access Control and Personnel Attendance Management system, stores users’ information by cleartext in the cookie, which divulges password to attackers.

Vendors
secom
Products
dr.id access control, dr.id attendance system
Weakness
CWE-312
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.