CVE-2020-36125

Pax Technology PAXSTORE v7.0.8_20200511171508 and lower is affected by incorrect access control where password revalidation in sensitive operations can be bypassed remotely by an authenticated attacker through requesting the endpoint directly.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:paxtechnology:paxstore:*:*:*:*:*:*:*:*

Information

Published : 2021-05-07 04:15

Updated : 2021-05-13 08:59


NVD link : CVE-2020-36125

Mitre link : CVE-2020-36125


JSON object : View

CWE
CWE-287

Improper Authentication

Advertisement

dedicated server usa

Products Affected

paxtechnology

  • paxstore