CVE-2020-26131
HIGH 7.8EPSS 0.4%
Issues were discovered in Open DHCP Server (Regular) 1.75 and Open DHCP Server (LDAP Based) 0.1Beta. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the OpenDHCPServer.exe (Regular) or the OpenDHCPLdap.exe (LDAP Based) binary.
- CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - CVSS v2.0
- 7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C - EPSS
- 0.42% chance of exploitation in the next 30 days, 35th percentile
- Published
- 2020-10-28
- Updated
- 2024-08-04
Proof-of-concept exploits (1)
- an0ry/advisories0★ · 2020-11-30