← back
CVE-2020-14479mediumCWE-306

ICSA-20-147-01 Inductive Automation Ignition (Update B)

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 5.3epss 0.9%
exploitation probability
0.9%top 45% of all CVEs
observed exploitation
nono source reports it
Sensitive information can be obtained through the handling of serialized data. The issue results from the lack of proper authentication required to query the server
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N