CVE-2020-15411: Critical severity Misp Misp vulnerability
Published Jun 30, 2020
·Updated
An issue was discovered in MISP 2.4.128. app/Controller/AttributesController.php has insufficient ACL checks in the attachment downloader.
Affected Software
2 affected components
Misp Misp=2.4.128
Misp-project Misp=2.4.128
Remediation
Event History
Jun 30, 2020
CVE Published
via MITRE·01:15 PM
Data Sourced
via MITRE·01:15 PM
Description
Data Sourced
via NVD·02:15 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2020-15411.
2
What is the severity of CVE-2020-15411?
The severity of CVE-2020-15411 is critical with a CVSS score of 9.8.
3
What is the affected software version?
The affected software version is MISP 2.4.128.
4
What is the description of CVE-2020-15411?
CVE-2020-15411 is an issue discovered in MISP 2.4.128 where app/Controller/AttributesController.php has insufficient ACL checks in the attachment downloader.
5
Is there a fix available for CVE-2020-15411?
Yes, a fix for CVE-2020-15411 is available. Please refer to the provided reference link for more information.