CVE-2020-28175: High severity almico speedfan vulnerability
Published Dec 3, 2020
·Updated
There is a local privilege escalation vulnerability in Alfredo Milani Comparetti SpeedFan 4.52. Attackers can use constructed programs to increase user privileges
Affected Software
1 affected component
Almico Speedfan=4.52
Event History
Dec 3, 2020
CVE Published
via MITRE·05:54 PM
Data Sourced
via MITRE·05:54 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-28175?
CVE-2020-28175 is classified as a local privilege escalation vulnerability.
2
How do I fix CVE-2020-28175?
To fix CVE-2020-28175, upgrade to the latest version of SpeedFan that addresses this vulnerability.
3
Who is affected by CVE-2020-28175?
Users of Almico SpeedFan version 4.52 are affected by CVE-2020-28175.
4
What kind of attacks are possible with CVE-2020-28175?
Attackers can execute constructed programs to gain elevated privileges on systems running the vulnerable version.
5
Is CVE-2020-28175 exploitable remotely?
CVE-2020-28175 is a local privilege escalation vulnerability and is not directly exploitable remotely.