← Back

CVE-2020-11847

nvd nist
Published: Aug 21, 2024Modified: Aug 23, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

SSH authenticated user when access the PAM server can execute an OS command to gain the full system access using bash. This issue affects Privileged Access Manager before 3.7.0.1.

Affected (2)

1 product
Netiq Privileged Access Manager
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Microfocus
Before 3.7
Version 3.7

Timeline

No history available yet.