CVE-2020-23256: Critical severity electerm vulnerability
Published Jan 20, 2023
·Updated
An issue was discovered in Electerm 1.3.22, allows attackers to execute arbitrary code via unverified request to electerms service.
Affected Software
1 affected component
Electerm Project Electerm=1.3.22
Remediation
Patch Available
Event History
Jan 20, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2020-23256?
CVE-2020-23256 is a vulnerability in Electerm 1.3.22 that allows attackers to execute arbitrary code via an unverified request to the electerms service.
2
How severe is CVE-2020-23256?
CVE-2020-23256 is classified as critical with a severity value of 9.8.
3
What software version is affected by CVE-2020-23256?
Electerm version 1.3.22 is affected by CVE-2020-23256.
4
How can the CVE-2020-23256 vulnerability be exploited?
The CVE-2020-23256 vulnerability can be exploited by sending unverified requests to the electerms service, allowing the execution of arbitrary code.
5
Is there a fix available for CVE-2020-23256?
At the time of this writing, there is no known fix available for CVE-2020-23256. It is recommended to follow the official Electerm project for any updates and patches.