CVE-2020-9020observed exploitation

CVE-2020-9020

Published · Updated

25Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck.

ssvc Attendepss 2.5%
from disclosure to weapon
Published on NVDFeb 17
VulnCheck+380d
exploitation probability
2.5%top 16% of all CVEs
observed exploitation
yesVulnCheck
Iteris Vantage Velocity Field Unit 2.3.1, 2.4.2, and 3.0 devices allow the injection of OS commands into cgi-bin/timeconfig.py via shell metacharacters in the NTP Server field.
Affected products
n/a · n/a