Логотип exploitDog
bind:CVE-2020-26077
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-26077

Количество 3

Количество 3

nvd логотип

CVE-2020-26077

около 5 лет назад

A vulnerability in the access control functionality of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to view lists of users from different domains that are configured on an affected system. The vulnerability is due to improper access control. An attacker could exploit this vulnerability by sending an API request that alters the domain for a requested user list on an affected system. A successful exploit could allow the attacker to view lists of users from different domains on the affected system.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-7q2r-9q4w-229g

больше 3 лет назад

A vulnerability in the access control functionality of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to view lists of users from different domains that are configured on an affected system. The vulnerability is due to improper access control. An attacker could exploit this vulnerability by sending an API request that alters the domain for a requested user list on an affected system. A successful exploit could allow the attacker to view lists of users from different domains on the affected system.

EPSS: Низкий
fstec логотип

BDU:2020-05522

около 5 лет назад

Уязвимость функции управления доступом программного средства управления сетью IoT Field Network Director, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-26077

A vulnerability in the access control functionality of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to view lists of users from different domains that are configured on an affected system. The vulnerability is due to improper access control. An attacker could exploit this vulnerability by sending an API request that alters the domain for a requested user list on an affected system. A successful exploit could allow the attacker to view lists of users from different domains on the affected system.

CVSS3: 4.3
0%
Низкий
около 5 лет назад
github логотип
GHSA-7q2r-9q4w-229g

A vulnerability in the access control functionality of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to view lists of users from different domains that are configured on an affected system. The vulnerability is due to improper access control. An attacker could exploit this vulnerability by sending an API request that alters the domain for a requested user list on an affected system. A successful exploit could allow the attacker to view lists of users from different domains on the affected system.

0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2020-05522

Уязвимость функции управления доступом программного средства управления сетью IoT Field Network Director, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5
0%
Низкий
около 5 лет назад

Уязвимостей на страницу