CVE Published: 03/02/2020 |
CVE Updated: 17/09/2024 |
CVE Year: 2020 Source: twcert |
Vendor: CHANGING |
Product: ServiSign Windows versions Status : PUBLISHED
CVE-2020-3925 Description
A Remote Code Execution(RCE) vulnerability exists in some designated applications in ServiSign security plugin, as long as the interface is captured, attackers are able to launch RCE and executes arbitrary command on target system via malicious crafted scripts.
Metrics
CVSS Version: 3.1 |
Base Score: 8.3 HIGH Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H