PoC Index

CVE-2020-14011

CRITICAL 9.8EPSS 29.5%

Lansweeper 6.0.x through 7.2.x has a default installation in which the admin password is configured for the admin account, unless "Built-in admin" is manually unchecked. This allows command execution via the Add New Package and Scheduled Deployments features.

CVSS v3.1
9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
29.47% chance of exploitation in the next 30 days, 98th percentile
Published
2020-06-15
Updated
2024-08-04

ExploitDB entries (1)

References

Related