CVE-2020-3991
published 2020-10-16CVE-2020-3991: VMware Horizon Client for Windows (5.x before 5.5.0) contains a denial-of-service vulnerability due to a file system access control issue during install time…
PriorityP427high7.1CVSS 3.1
AVLACLPRLUINSUCNIHAH
EPSS
0.34%
26.6th percentile
VMware Horizon Client for Windows (5.x before 5.5.0) contains a denial-of-service vulnerability due to a file system access control issue during install time. Successful exploitation of this issue may allow an attacker to overwrite certain admin privileged files through a symbolic link attack at install time. This will result into a denial-of-service condition on the machine where Horizon Client for Windows is installed.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | nifi | — | — |
| vmware | horizon_client | >= 5.0.0 < 5.5.0 | 5.5.0 |
CVSS provenance
nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
nvdv2.03.6LOWAV:L/AC:L/Au:N/C:N/I:P/A:P
vendor_apache6.1
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6rc8-hqq9-gfph: VMware Horizon Client for Windows (5
ghsa_unreviewed·2022-05-24
CVE-2020-3991 [HIGH] GHSA-6rc8-hqq9-gfph: VMware Horizon Client for Windows (5
VMware Horizon Client for Windows (5.x before 5.5.0) contains a denial-of-service vulnerability due to a file system access control issue during install time. Successful exploitation of this issue may allow an attacker to overwrite certain admin privileged files through a symbolic link attack at install time. This will result into a denial-of-service condition on the machine where Horizon Client for Windows is installed.
Apache
Apache nifi: CVE-2020-1933
vendor_apache·CVSS 6.1
CVE-2020-1933 Apache nifi: CVE-2020-1933
Apache nifi: CVE-2020-1933
Title: Potential Cross-Site Scripting in Uploaded Templates Published: 2020-01-22 Severity: Medium Products: Apache NiFi Affected Versions: 1.0.0 to 1.10.0 Fixed Versions: 1.11.0 Reporter: Jakub Palaczynski of ING Tech Poland References CVE Record: CVE-2020-1933 NVD Record: CVE-2020-1933 Apache Jira Issue: NIFI-7023 GitHub Pull Request: 3991 Malicious scripts could be injected to the UI through action by an unaware authenticated user in Firefox. Did not appear to occur in other browsers. NiFi 1.11.0 adds sanitization of the error response ensures the XSS would not be executed. Users running earlier versions should upgrade to 1.11.0.
Severity: moderate
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2020-10-16
Published