7.8
CVE-2020-27977
- EPSS 0.07%
- Veröffentlicht 09.11.2020 20:15:13
- Zuletzt bearbeitet 21.11.2024 05:22:08
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
CapaSystems CapaInstaller before 6.0.101 does not properly assign, modify, or check privileges for an actor who attempts to edit registry values, allowing an attacker to escalate privileges.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Capasystems ≫ Capainstaller Version < 6.0.101
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.07% | 0.177 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|