CVE-2020-9020
Published · Updated
25Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck.
ssvc Attendepss 2.5%
from disclosure to weapon
Published on NVDFeb 17
VulnCheck+380d
exploitation probability
2.5%top 16% of all CVEs
observed exploitation
yesVulnCheck
Iteris Vantage Velocity Field Unit 2.3.1, 2.4.2, and 3.0 devices allow the injection of OS commands into cgi-bin/timeconfig.py via shell metacharacters in the NTP Server field.
Affected products
n/a · n/a