CVE-2020-25106

Severity CVSS v4.0:
Pending analysis
Type:
CWE-269 Improper Privilege Management
Publication date:
22/12/2020
Last modified:
21/07/2021

Description

Nanosystems SupRemo 4.1.3.2348 allows attackers to obtain LocalSystem access because File Manager can be used to rename Supremo.exe and then upload a Trojan horse with the Supremo.exe filename.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:supremocontrol:supremo:4.1.3.2348:*:*:*:*:*:*:*