CVE-2020-5743: Medium severity Tecnick TCExam vulnerability
Published May 7, 2020
·Updated
Improper Control of Resource Identifiers in TCExam 14.2.2 allows a remote, authenticated attacker to access test metadata for which they don't have permission.
Affected Software
1 affected component
Tecnick TCExam=14.2.2
Remediation
Patch Available
Event History
May 7, 2020
CVE Published
via MITRE·04:05 PM
Data Sourced
via MITRE·04:05 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-5743?
The severity of CVE-2020-5743 is medium (4.3).
2
What is the affected software of CVE-2020-5743?
The affected software of CVE-2020-5743 is TCExam version 14.2.2.
3
How can a remote attacker exploit CVE-2020-5743?
A remote attacker can exploit CVE-2020-5743 by accessing test metadata without proper permission.
4
Is authentication required for the exploitation of CVE-2020-5743?
Yes, authentication is required for the exploitation of CVE-2020-5743.
5
Where can I find more information about CVE-2020-5743?
You can find more information about CVE-2020-5743 at the following link: https://www.tenable.com/security/research/tra-2020-31