Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-3925

Опубликовано: 03 фев. 2020
Источник: nvd
CVSS3: 8.3
CVSS3: 8.8
CVSS2: 9.3
EPSS Низкий

Описание

A Remote Code Execution(RCE) vulnerability exists in some designated applications in ServiSign security plugin, as long as the interface is captured, attackers are able to launch RCE and executes arbitrary command on target system via malicious crafted scripts.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:changingtec:servisign:*:*:*:*:*:*:*:*
Версия до 1.0.19.0617 (включая)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

EPSS

Процентиль: 89%
0.04511
Низкий

8.3 High

CVSS3

8.8 High

CVSS3

9.3 Critical

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

github
больше 3 лет назад

A Remote Code Execution(RCE) vulnerability exists in some designated applications in ServiSign security plugin, as long as the interface is captured, attackers are able to launch RCE and executes arbitrary command on target system via malicious crafted scripts.

EPSS

Процентиль: 89%
0.04511
Низкий

8.3 High

CVSS3

8.8 High

CVSS3

9.3 Critical

CVSS2

Дефекты

NVD-CWE-noinfo