CVE-2020-14479

Severity CVSS v4.0:
Pending analysis
Type:
CWE-306 Missing Authentication for Critical Function
Publication date:
01/04/2022
Last modified:
09/04/2022

Description

Sensitive information can be obtained through the handling of serialized data. The issue results from the lack of proper authentication required to query the server

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:inductiveautomation:ignition:*:*:*:*:*:*:*:* 7.0.0 (including) 7.9.14 (excluding)
cpe:2.3:a:inductiveautomation:ignition:*:*:*:*:*:*:*:* 8.0.1 (including) 8.0.10 (including)


References to Advisories, Solutions, and Tools