Lack of cryptographic signature verification in the Sqreen PHP agent daemon before 1.16.0 makes it easier for remote attackers to inject rules for execution inside the virtual machine.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-18175 | Lack of cryptographic signature verification in the Sqreen PHP agent daemon before 1.16.0 makes it easier for remote attackers to inject rules for execution inside the virtual machine. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T15:33:05.701Z
Reserved: 2020-09-14T00:00:00
Link: CVE-2020-25490
No data.
Status : Modified
Published: 2020-09-17T17:15:16.303
Modified: 2024-11-21T05:18:02.920
Link: CVE-2020-25490
No data.
OpenCVE Enrichment
No data.
EUVD