Vulnerability CVE-2020-5555


Published: 2020-03-25

Description:
Shihonkanri Plus GOOUT Ver1.5.8 and Ver2.2.10 allows remote attackers to read and write data of the files placed in the same directory where it is placed via unspecified vector due to the improper input validation issue.

Type:

CWE-20

(Improper Input Validation)

CVSS2 => (AV:N/AC:L/Au:N/C:P/I:P/A:N)

CVSS Base Score
Impact Subscore
Exploitability Subscore
6.4/10
4.9/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
Partial
None
Affected software
Shihonkanri plus goout project -> Shihonkanri plus goout 

 References:
https://jvn.jp/en/jp/JVN32415420/index.html

Copyright 2024, cxsecurity.com

 

Back to Top