Lucene search

K
cveJpcertCVE-2020-5555
HistoryMar 25, 2020 - 2:15 a.m.

CVE-2020-5555

2020-03-2502:15:11
CWE-20
jpcert
web.nvd.nist.gov
26
cve-2020-5555
shihonkanri plus
goout
remote attackers
data read
data write
improper input validation
security issue

CVSS2

6.4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

CVSS3

9.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

AI Score

9

Confidence

High

EPSS

0.007

Percentile

80.9%

Shihonkanri Plus GOOUT Ver1.5.8 and Ver2.2.10 allows remote attackers to read and write data of the files placed in the same directory where it is placed via unspecified vector due to the improper input validation issue.

Affected configurations

Nvd
Vulners
Node
shihonkanri_plus_goout_projectshihonkanri_plus_gooutMatch1.5.8
OR
shihonkanri_plus_goout_projectshihonkanri_plus_gooutMatch2.2.10
VendorProductVersionCPE
shihonkanri_plus_goout_projectshihonkanri_plus_goout1.5.8cpe:2.3:a:shihonkanri_plus_goout_project:shihonkanri_plus_goout:1.5.8:*:*:*:*:*:*:*
shihonkanri_plus_goout_projectshihonkanri_plus_goout2.2.10cpe:2.3:a:shihonkanri_plus_goout_project:shihonkanri_plus_goout:2.2.10:*:*:*:*:*:*:*

CNA Affected

[
  {
    "product": "Shihonkanri Plus GOOUT",
    "vendor": "EKAKIN",
    "versions": [
      {
        "status": "affected",
        "version": "Ver1.5.8 and Ver2.2.10"
      }
    ]
  }
]

CVSS2

6.4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

CVSS3

9.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

AI Score

9

Confidence

High

EPSS

0.007

Percentile

80.9%

Related for CVE-2020-5555