First published: Mon Feb 03 2020(Updated: )
An arbitrary-file-access vulnerability exists in ServiSign security plugin, as long as the attackers learn the specific API function, they may access arbitrary files on target system via crafted API parameter.
Credit: twcert@cert.org.tw
Affected Software | Affected Version | How to fix |
---|---|---|
ChangingTec ServiSign | <=1.0.19.0617 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-3927 is an arbitrary-file-access vulnerability in the ServiSign security plugin.
CVE-2020-3927 has a severity keyword of 'high' with a base score of 7.5.
The ChangingTec ServiSign version 1.0.19.0617 is affected by CVE-2020-3927.