PT-2020-20460 · Tyco · Exacqvision Enterprise Manager+1

·

CVE-2020-9047

·

Published

2020-06-26

·

Updated

2021-05-26

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions exacqVision Web Service versions 20.06.3.0 and prior exacqVision Enterprise Manager versions 20.06.4.0 and prior
Description A vulnerability exists that could allow the execution of unauthorized code or operating system commands on systems. An attacker with administrative privileges could potentially download and run a malicious executable that could allow OS command injection on the system.
Recommendations For exacqVision Web Service versions 20.06.3.0 and prior, update to a version later than 20.06.3.0 to resolve the issue. For exacqVision Enterprise Manager versions 20.06.4.0 and prior, update to a version later than 20.06.4.0 to resolve the issue.

Exploit

Fix

DoS

Improper Verification of Cryptographic Signature

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-9047

Affected Products

Exacqvision Enterprise Manager
Exacqvision Web Service