HIGH · 7.5

CVE-2020-28993

A Directory Traversal vulnerability exists in ATX miniCMTS200a Broadband Gateway through 2.0 and Pico CMTS through 2.0. Successful exploitation of this vulnerability would allow an unauthenticated att...

Vulnerability Description

A Directory Traversal vulnerability exists in ATX miniCMTS200a Broadband Gateway through 2.0 and Pico CMTS through 2.0. Successful exploitation of this vulnerability would allow an unauthenticated attacker to retrieve administrator credentials by sending a malicious POST request.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
AtxMinicmts200A Firmware<= 2.0
AtxMinicmts200A-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2020-28993?

CVE-2020-28993 is a vulnerability with a CVSS score of 7.5 (HIGH). A Directory Traversal vulnerability exists in ATX miniCMTS200a Broadband Gateway through 2.0 and Pico CMTS through 2.0. Successful exploitation of this vulnerability would allow an unauthenticated att...

How severe is CVE-2020-28993?

CVE-2020-28993 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2020-28993?

Check the references section above for vendor advisories and patch information. Affected products include: Atx Minicmts200A Firmware, Atx Minicmts200A.