Lucene search

K
cvelistMitreCVELIST:CVE-2020-35205
HistoryJan 11, 2021 - 2:52 a.m.

CVE-2020-35205

2021-01-1102:52:14
mitre
www.cve.org
1
cve-2020-35205
server side request forgery
web compliance manager
quest policy authority
port scanning
outbound connections
initfile.jsp
vulnerability
unsupported products

AI Score

9.4

Confidence

High

EPSS

0.011

Percentile

84.7%

Server Side Request Forgery (SSRF) in Web Compliance Manager in Quest Policy Authority version 8.1.2.200 allows attackers to scan internal ports and make outbound connections via the initFile.jsp file. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

AI Score

9.4

Confidence

High

EPSS

0.011

Percentile

84.7%

Related for CVELIST:CVE-2020-35205