VDB
CVE-2020-27336
CVE-2020-27336
PUBLISHED
De multiples vulnérabilités ont été découvertes dans les produits Treck. Elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et une atteinte à la confidentialité des données.
EPSS 1.71% · 75.1th percentile
Risk Scores
EPSS Score
1.71%
75.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Schneider Electric | N/A | |
| Apache | N/A | |
| Apache | HTTP Server |
Timeline
- Dec 21, 2020 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 28, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 2, 2022 EPSS Score
- Jul 3, 2022 EPSS Score
- Sep 5, 2022 EPSS Score
References
- https://cert.ssi.gouv.fr/avis/CERTFR-2020-AVI-836/ advisory
- https://www.se.com/ww/en/download/document/SEVD-2020-353-02/ advisory
- https://www.se.com/ww/en/download/document/SEVD-2020-353-01/ advisory
- https://cert.ssi.gouv.fr/avis/CERTFR-2020-AVI-843/ advisory
- https://treck.com/vulnerability-response-information/ advisory
- https://cert.ssi.gouv.fr/avis/CERTFR-2021-AVI-705/ advisory
- https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2021-257-03 advisory
- https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2021-257-01 advisory
- https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2020-353-01 advisory
- https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2021-257-02 advisory
- https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2021-257-04 advisory