9.8
CVE-2020-8606
- EPSS 88.83%
- Veröffentlicht 27.05.2020 23:15:11
- Zuletzt bearbeitet 21.11.2024 05:39:06
- Quelle security@trendmicro.com
- CVE-Watchlists
- Unerledigt
A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to bypass authentication on affected installations of Trend Micro InterScan Web Security Virtual Appliance.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Trendmicro ≫ Interscan Web Security Virtual Appliance Version6.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 88.83% | 0.995 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
CWE-287 Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.