CVE-2020-7953

Severity CVSS v4.0:
Pending analysis
Type:
CWE-306 Missing Authentication for Critical Function
Publication date:
06/02/2020
Last modified:
07/11/2023

Description

An issue was discovered in OpServices OpMon 9.3.2. Without authentication, it is possible to read server files (e.g., /etc/passwd) due to the use of the nmap -iL (aka input file) option.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:opservices:opmon:9.3.2:*:*:*:*:*:*:*