Remote Code Execution Vulnerability in Electerm by Electerm
CVE-2020-23256

9.8CRITICAL

Key Information:

Status
Vendor
CVE Published:
20 January 2023

What is CVE-2020-23256?

A vulnerability exists in Electerm version 1.3.22 that enables attackers to execute arbitrary code through unverified requests sent to the Electerm service. This security flaw can potentially compromise the integrity of the system and allow unauthorized access.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.