Vulnerability Description
In PACTware before 4.1 SP6 and 5.x before 5.0.5.31, passwords are stored in an insecure manner, and may be modified by an attacker with no knowledge of the current passwords.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Pactware | Pactware | >= 5.0, < 5.0.5.31 |
Related Weaknesses (CWE)
References
- https://pactware.com/fileadmin/user_upload/Cyber-Security-Documents/2020-05-29_pVendor Advisory
- https://pactware.com/fileadmin/user_upload/Cyber-Security-Documents/2020-05-29_pVendor Advisory
FAQ
What is CVE-2020-9404?
CVE-2020-9404 is a vulnerability with a CVSS score of 7.1 (HIGH). In PACTware before 4.1 SP6 and 5.x before 5.0.5.31, passwords are stored in an insecure manner, and may be modified by an attacker with no knowledge of the current passwords.
How severe is CVE-2020-9404?
CVE-2020-9404 has been rated HIGH with a CVSS base score of 7.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-9404?
Check the references section above for vendor advisories and patch information. Affected products include: Pactware Pactware.