Vulnerability Details CVE-2020-11542
3xLOGIC Infinias eIDC32 2.213 devices with Web 1.107 allow Authentication Bypass via CMD.HTM?CMD= because authentication depends on the client side's interpretation of the <KEY>MYKEY</KEY> substring.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 20.3%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2020-11542
-
cpe:2.3:o:3xlogic:infinias_eidc32:-
-
cpe:2.3:o:3xlogic:infinias_eidc32_firmware:2.213
-
cpe:2.3:o:3xlogic:infinias_eidc32_web:1.107