← Back

CVE-2020-25490

nvd nist
Published: Sep 17, 2020Modified: Nov 21, 2024

JSON object

Loading...
7.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Exploitability: 3.9 / Impact: 3.4
Source: NVD

Description

Lack of cryptographic signature verification in the Sqreen PHP agent daemon before 1.16.0 makes it easier for remote attackers to inject rules for execution inside the virtual machine.

Affected (1)

1 product
Php Microagent
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 1.16.0

Timeline

No history available yet.