CVE Published: 17/06/2022 |
CVE Updated: 04/08/2024 |
CVE Year: 2020 Source: icscert |
Vendor: GE |
Product: Voluson S8 Status : PUBLISHED
CVE-2020-36548 Description
A vulnerability classified as problematic has been found in GE Voluson S8. Affected is the file /uscgi-bin/users.cgi of the Service Browser. The manipulation leads to improper authentication and elevated access possibilities. It is possible to launch the attack on the local host.
Metrics
CVSS Version: 3.1 |
Base Score: 5.9 MEDIUM Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L