Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-3484

Опубликовано: 26 авг. 2020
Источник: nvd
CVSS3: 5.3
CVSS2: 5
EPSS Низкий

Описание

A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an unauthenticated, remote attacker to view potentially sensitive information on an affected device. The vulnerability is due to incorrect permissions within Apache configuration. An attacker could exploit this vulnerability by sending a crafted HTTP request to the web-based management interface. A successful exploit could allow the attacker to view potentially sensitive information on the affected device.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:cisco:vision_dynamic_signage_director:6.2\(0\):sp2:*:*:*:*:*:*

EPSS

Процентиль: 29%
0.00108
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-16
CWE-276

Связанные уязвимости

github
больше 3 лет назад

A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an unauthenticated, remote attacker to view potentially sensitive information on an affected device. The vulnerability is due to incorrect permissions within Apache configuration. An attacker could exploit this vulnerability by sending a crafted HTTP request to the web-based management interface. A successful exploit could allow the attacker to view potentially sensitive information on the affected device.

CVSS3: 5.3
fstec
больше 5 лет назад

Уязвимость веб-интерфейса управления системы управления цифровым контентом Cisco Vision Dynamic Signage Director, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 29%
0.00108
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-16
CWE-276