Vulnerabilities > CVE-2020-27362 - Incorrect Authorization vulnerability in Akkadianlabs Akkadian Provisioning Manager 4.50.02

047910
CVSS 9.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
SINGLE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
akkadianlabs
CWE-863
critical

Summary

An issue exists within the SSH console of Akkadian Provisioning Manager 4.50.02 which allows a low-level privileged user to escape the web configuration file editor and escalate privileges.

Vulnerable Configurations

Part Description Count
Application
Akkadianlabs
1

Common Weakness Enumeration (CWE)