← volver
CVE-2017-20028mediumCWE-269

HumHub privileges management

13Vexday Risk Score

Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.

ssvc Trackcvss 5.6epss 0.8%
probabilidad de explotación
0.8%top 45% de las CVE
explotación observada
noninguna fuente lo reporta
A vulnerability was found in HumHub 0.20.1/1.0.0-beta.3. It has been classified as critical. This affects an unknown part. The manipulation leads to privilege escalation. It is possible to initiate the attack remotely. Upgrading to version 1.0.0 is able to address this issue. It is recommended to upgrade the affected component.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L
Productos afectados
unspecified · HumHub