CVE-2020-9225

Severity
7.8HIGH
EPSS
0.0%
top 94.49%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 18
Latest updateMay 24

Description

FusionSphere OpenStack 6.5.1 have an improper permissions management vulnerability. The software does not correctly perform a privilege assignment when an actor attempts to perform an action. Successful exploit could allow certain user to do certain operations beyond its privilege.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-vpqm-qcm6-93g3: FusionSphere OpenStack 62022-05-24
CVEList
CVE-2020-9225: FusionSphere OpenStack 62020-06-18
CVE-2020-9225 (HIGH CVSS 7.8) | FusionSphere OpenStack 6.5.1 have a | cvebase.io