Vulnerability Description
An issue was discovered in Epikur before 20.1.1. A Glassfish 4.1 server with a default configuration is running on TCP port 4848. No password is required to access it with the administrator account.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Epikur | Epikur | < 20.1.1 |
Related Weaknesses (CWE)
References
- https://www.x41-dsec.de/lab/advisories/x41-2020-003-epikurExploitThird Party Advisory
- https://www.x41-dsec.de/lab/advisories/x41-2020-003-epikurExploitThird Party Advisory
FAQ
What is CVE-2020-10537?
CVE-2020-10537 is a vulnerability with a CVSS score of 7.8 (HIGH). An issue was discovered in Epikur before 20.1.1. A Glassfish 4.1 server with a default configuration is running on TCP port 4848. No password is required to access it with the administrator account.
How severe is CVE-2020-10537?
CVE-2020-10537 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-10537?
Check the references section above for vendor advisories and patch information. Affected products include: Epikur Epikur.