← back
CVE-2020-15920observed exploitation

CVE-2020-15920

82Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actepss 98%
from disclosure to weapon34 days
Published on NVDJul 24
1st PoC+34d
metasploitJul 24
VulnCheck+1249d
exploitation probability
98%top 1% of all CVEs
observed exploitation
yesVulnCheck
3 public exploit(s)
There is an OS Command Injection in Mida eFramework through 2.9.0 that allows an attacker to achieve Remote Code Execution (RCE) with administrative (root) privileges. No authentication is required.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.