CVE-2020-23060
HIGH 7.1EPSS 0.4%
Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Export/Import function. This vulnerability allows attackers to escalate local process privileges via a crafted ef2 file.
- CVSS v3.1
- 7.1 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H - CVSS v2.0
- 6.6 MEDIUM
AV:L/AC:L/Au:N/C:N/I:C/A:C - EPSS
- 0.41% chance of exploitation in the next 30 days, 34th percentile
- Published
- 2021-10-22
- Updated
- 2024-08-04