Lucene search

K
cvelistMitreCVELIST:CVE-2020-25619
HistoryDec 16, 2020 - 2:01 p.m.

CVE-2020-25619

2020-12-1614:01:36
mitre
www.cve.org
3
solarwinds
n-central
ssh
issue
security
cve-2020-25619
communication channel
network services

AI Score

4.6

Confidence

High

EPSS

0.001

Percentile

17.2%

An issue was discovered in SolarWinds N-Central 12.3.0.670. The SSH component does not restrict the Communication Channel to Intended Endpoints. An attacker can leverage an SSH feature (port forwarding with a temporary key pair) to access network services on the 127.0.0.1 interface, even though this feature was only intended for user-to-agent communication.

AI Score

4.6

Confidence

High

EPSS

0.001

Percentile

17.2%

Related for CVELIST:CVE-2020-25619