Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-8995

Опубликовано: 21 дек. 2020
Источник: nvd
CVSS3: 9.8
CVSS2: 5
EPSS Низкий

Описание

Programi Bilanc Build 007 Release 014 31.01.2020 supplies a .exe file containing several hardcoded credentials to different servers that allow remote attackers to gain access to the complete infrastructure including the website, update server, and external issue tracking tools.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:bilanc:bilanc:*:*:*:*:*:*:*:*
Версия до 014_31.01.2020 (включая)

EPSS

Процентиль: 78%
0.01109
Низкий

9.8 Critical

CVSS3

5 Medium

CVSS2

Дефекты

CWE-798

Связанные уязвимости

github
больше 3 лет назад

Programi Bilanc Build 007 Release 014 31.01.2020 supplies a .exe file containing several hardcoded credentials to different servers that allow remote attackers to gain access to the complete infrastructure including the website, update server, and external issue tracking tools.

EPSS

Процентиль: 78%
0.01109
Низкий

9.8 Critical

CVSS3

5 Medium

CVSS2

Дефекты

CWE-798