CVE-2020-36948
CRITICAL Exploitation: PoC
9.8
CVSS 3.1
Description
VestaCP 0.9.8-26 contains a session token vulnerability in the LoginAs module that allows remote attackers to manipulate authentication tokens. Attackers can exploit insufficient token validation to access user accounts and perform unauthorized login requests without proper administrative permissions.
Metadata
Severity & Metrics
9.8
CRITICAL CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
SSVC — CISA Coordinator
Affected products (1)
| Vendor | Product | Platform | Versions |
|---|---|---|---|
| VestaCP | VestaCP | — | 0.9.8-26 |
Weakness (CWE)
| CWE | Source | Description |
|---|---|---|
| CWE-863 | cna | Incorrect Authorization |
CVSS scores (2)
| Score | Severity | Version | Source | Vector |
|---|---|---|---|---|
| 9.8 | CRITICAL | 3.1 | cna | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| 8.7 | HIGH | 4.0 | cna | CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N |
References (5)
- ExploitDB-49219 https://www.exploit-db.com/exploits/49219
- VestaCP Official Homepage https://vestacp.com/
- Vulnerability Lab Advisory https://www.vulnerability-lab.com/get_content.php?id=2240
- Benjamin Kunz Mejri Profile https://www.vulnerability-lab.com/show.php?user=Benjamin%20K.M.
- VulnCheck Advisory: VestaCP 0.9.8-26 - 'LoginAs' Insufficient Session Validation https://www.vulncheck.com/advisories/vestacp-loginas-insufficient-session-validation