Lucene search

K
cvelistSiemensCVELIST:CVE-2020-15794
HistoryOct 15, 2020 - 6:45 p.m.

CVE-2020-15794

2020-10-1518:45:34
CWE-200
siemens
www.cve.org
3
cve-2020-15794
desigo insight
web application
error messages
absolute path
authenticated attacker
host system

AI Score

4.4

Confidence

High

EPSS

0.001

Percentile

22.7%

A vulnerability has been identified in Desigo Insight (All versions). Some error messages in the web application show the absolute path to the requested resource. This could allow an authenticated attacker to retrieve additional information about the host system.

CNA Affected

[
  {
    "product": "Desigo Insight",
    "vendor": "Siemens",
    "versions": [
      {
        "status": "affected",
        "version": "All versions"
      }
    ]
  }
]

AI Score

4.4

Confidence

High

EPSS

0.001

Percentile

22.7%

Related for CVELIST:CVE-2020-15794