7.8
CVE-2020-5538
- EPSS 0.05%
- Veröffentlicht 11.05.2020 05:15:11
- Zuletzt bearbeitet 21.11.2024 05:34:14
- Quelle vultures@jpcert.or.jp
- CVE-Watchlists
- Unerledigt
Improper Access Control in PALLET CONTROL Ver. 6.3 and earlier allows authenticated attackers to execute arbitrary code with the SYSTEM privilege on the computer where PALLET CONTROL is installed via unspecified vectors. PalletControl 7 to 9.1 are not affected by this vulnerability, however under the environment where PLS Management Add-on Module is used, all versions are affected.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Jalinfotec ≫ Pallet Control Version <= 6.3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.05% | 0.111 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 7.2 | 3.9 | 10 |
AV:L/AC:L/Au:N/C:C/I:C/A:C
|