Default Administrator Credentials Vulnerability in ThinkAdmin by Zoujingli
CVE-2020-35296

7.5HIGH

Key Information:

Vendor

Thinkadmin

Vendor
CVE Published:
3 March 2021

What is CVE-2020-35296?

In ThinkAdmin version 6, the presence of default administrator credentials poses a serious security concern, enabling unauthorized attackers to gain full access to the administrator dashboard. This flaw allows individuals with malicious intent to exploit the default login details, compromising sensitive data and potentially leading to further exploitations within the system.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.