CVE-2020-6975: Malicious File Upload
Published Feb 12, 2020
·Updated
Digi International ConnectPort LTS 32 MEI, Firmware Version 1.4.3 (82002228K 08/09/2018), bios Version 1.2. Successful exploitation of this vulnerability could allow an attacker to upload a malicious file to the application.
Affected Software
6 affected components
Digi Connectport Lts 32 Mei Bios=1.2
Digi Connectport Lts 32 Mei Firmware=1.4.3
Digi ConnectPort LTS 32 MEI
All of the following
Any of the following
Digi Connectport Lts 32 Mei Bios=1.2
Digi Connectport Lts 32 Mei Firmware=1.4.3
Digi ConnectPort LTS 32 MEI
Event History
Feb 12, 2020
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
DescriptionWeakness
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for Digi International ConnectPort LTS 32 MEI?
The vulnerability ID for Digi International ConnectPort LTS 32 MEI is CVE-2020-6975.
2
What is the severity level of CVE-2020-6975?
The severity level of CVE-2020-6975 is medium (4.9).
3
How can an attacker exploit CVE-2020-6975?
An attacker can exploit CVE-2020-6975 by uploading a malicious file to the application.
4
What software versions are affected by CVE-2020-6975?
The affected software versions are Digi Connectport LTS 32 MEI Bios 1.2 and Digi Connectport LTS 32 MEI Firmware 1.4.3.
5
Is Digi ConnectPort LTS 32 MEI vulnerable to CVE-2020-6975?
Digi ConnectPort LTS 32 MEI is not vulnerable to CVE-2020-6975.