CVE-2020-8572

Severity
7.5HIGH
EPSS
0.3%
top 44.67%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 21
Latest updateMay 24

Description

Element OS prior to version 12.0 and Element HealthTools prior to version 2020.04.01.04 are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages3 packages

CVEListV5sensitive_information_disclosure_vulnerability_in_element_os_and_element_healthtoolsElement OS prior to version 12.0 and Element HealthTools prior to version 2020.04.01.04
NVDnetapp/element_healthtools< 2020.04.01.04
NVDnetapp/element_os10.012.0

Patches

🔴Vulnerability Details

2
GHSA
GHSA-44r5-8f35-7gfj: Element OS prior to version 122022-05-24
CVEList
CVE-2020-8572: Element OS prior to version 122020-05-21
CVE-2020-8572 (HIGH CVSS 7.5) | Element OS prior to version 12.0 an | cvebase.io