HIGH · 8.8

CVE-2020-6844

In TopManage OLK 2020, login CSRF can be chained with another vulnerability in order to takeover admin and user accounts.

Vulnerability Description

In TopManage OLK 2020, login CSRF can be chained with another vulnerability in order to takeover admin and user accounts.

CVSS Score

8.8

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
TopmanageOlk Webstore2020

Related Weaknesses (CWE)

References

FAQ

What is CVE-2020-6844?

CVE-2020-6844 is a vulnerability with a CVSS score of 8.8 (HIGH). In TopManage OLK 2020, login CSRF can be chained with another vulnerability in order to takeover admin and user accounts.

How severe is CVE-2020-6844?

CVE-2020-6844 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2020-6844?

Check the references section above for vendor advisories and patch information. Affected products include: Topmanage Olk Webstore.