Lucene search

K
cvelistMitreCVELIST:CVE-2020-18701
HistoryAug 16, 2021 - 5:55 p.m.

CVE-2020-18701

2021-08-1617:55:27
mitre
www.cve.org
2
access control
lin-cms-flask
remote attackers
sensitive information
gain privileges
authentication token
logout
replay attack

AI Score

9.5

Confidence

High

EPSS

0.005

Percentile

76.9%

Incorrect Access Control in Lin-CMS-Flask v0.1.1 allows remote attackers to obtain sensitive information and/or gain privileges due to the application not invalidating a user’s authentication token upon logout, which allows for replaying packets.

AI Score

9.5

Confidence

High

EPSS

0.005

Percentile

76.9%

Related for CVELIST:CVE-2020-18701