CVE-2020-9034: High severity Microchip Syncserver S100 Firmware vulnerability
Symmetricom SyncServer S100 2.90.70.3, S200 1.30, S250 1.25, S300 2.65.0, and S350 2.80.1 devices mishandle session validation, leading to unauthenticated creation, modification, or elimination of users.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-9034?
CVE-2020-9034 is a vulnerability that affects Symmetricom SyncServer S100 2.90.70.3, S200 1.30, S250 1.25, S300 2.65.0, and S350 2.80.1 devices.
How severe is CVE-2020-9034?
CVE-2020-9034 has a severity rating of 7.5 (high).
What is the vulnerability in CVE-2020-9034?
The vulnerability in CVE-2020-9034 is that the affected devices mishandle session validation, leading to unauthenticated creation, modification, or elimination of users.
Which devices are affected by CVE-2020-9034?
Symmetricom SyncServer S100 2.90.70.3, S200 1.30, S250 1.25, S300 2.65.0, and S350 2.80.1 devices are affected by CVE-2020-9034.
Is there a fix for CVE-2020-9034?
At the moment, there is no specific fix available for CVE-2020-9034. It is recommended to follow best practices for securing the affected devices and monitor for any updates or patches from the vendor.