Lucene search

K
prionPRIOn knowledge basePRION:CVE-2020-3365
HistorySep 04, 2020 - 3:15 a.m.

Directory traversal

2020-09-0403:15:00
PRIOn knowledge base
www.prio-n.com
3

6.4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

36.4%

A vulnerability in the directory permissions of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to perform a directory traversal attack on a limited set of restricted directories. The vulnerability is due to a flaw in the logic that governs directory permissions. An attacker could exploit this vulnerability by using capabilities that are not controlled by the role-based access control (RBAC) mechanisms of the software. A successful exploit could allow the attacker to overwrite files on an affected device.

6.4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

36.4%

Related for PRION:CVE-2020-3365