CVE-2020-24711: Medium severity gophish vulnerability
Published Oct 28, 2020
·Updated
The Reset button on the Account Settings page in Gophish before 0.11.0 allows attackers to cause a denial of service via a clickjacking attack
Affected Software
1 affected component
Getgophish Gophish<0.11.0
Remediation
Event History
Oct 28, 2020
CVE Published
via MITRE·07:33 PM
Data Sourced
via MITRE·07:33 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-24711?
CVE-2020-24711 has a severity level of medium, indicating a potential denial of service risk.
2
How do I fix CVE-2020-24711?
To fix CVE-2020-24711, upgrade Gophish to version 0.11.0 or later.
3
What type of attack does CVE-2020-24711 allow?
CVE-2020-24711 allows attackers to perform a clickjacking attack leading to denial of service.
4
In which version of Gophish is CVE-2020-24711 present?
CVE-2020-24711 is present in Gophish versions prior to 0.11.0.
5
What components are affected by CVE-2020-24711?
CVE-2020-24711 affects the Reset button on the Account Settings page of Gophish.