Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-15492

An issue was discovered in INNEO Startup TOOLS 2017 M021 12.0.66.3784 through 2018 M040 13.0.70.3804. The sut_srv.exe web application (served on TCP port 85) includes user input into a filesystem access without any further validation. This might allow an unauthenticated attacker to read files on the server via Directory Traversal, or possibly have unspecified other impact.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.377
EPSS Ranking 97.1%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
References
Products affected by CVE-2020-15492
  • Inneo » Startup Tools » Version: 12.0.66.3784
    cpe:2.3:a:inneo:startup_tools:12.0.66.3784
  • Inneo » Startup Tools » Version: 13.0.70.3804
    cpe:2.3:a:inneo:startup_tools:13.0.70.3804


Contact Us

Shodan ® - All rights reserved