PT-2023-11828 · Unknown · Paxswill Eve Ship Replacement Program

CVE-2020-36660

·

Published

2023-02-06

·

Updated

2024-05-17

CVSS v4.0

5.3

Medium

VectorAV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions paxswill EVE Ship Replacement Program version 0.12.11
Description A vulnerability was found in the paxswill EVE Ship Replacement Program, affecting the User Information Handler component. This issue leads to information disclosure and can be initiated remotely. The vulnerability affects some unknown processing of the file src/evesrp/views/api.py.
Recommendations To address this issue, upgrade to version 0.12.12.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-36660
GHSA-FXQX-XGQQ-GF42
PYSEC-2023-208

Affected Products

Paxswill Eve Ship Replacement Program