Vulnerability Details CVE-2020-26510
Airleader Master <= 6.21 devices have default credentials that can be used to access the exposed Tomcat Manager for deployment of a new .war file, with resultant remote code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 77.6%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 5.0
Products affected by CVE-2020-26510
-
cpe:2.3:h:airleader:airleader_easy:-
-
cpe:2.3:h:airleader:airleader_master:-
-
cpe:2.3:o:airleader:airleader_master_control:*