CVE-2020-11847
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD
Description
SSH authenticated user when access the PAM server can execute an OS command to gain the full system access using bash. This issue affects Privileged Access Manager before 3.7.0.1.
Affected (2)
Products: Microfocus: Netiq Privileged Access Manager
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.7 |
References (1)
Source: security@opentext.com
Release Notes
Timeline
No history available yet.