Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-28481

The package socket.io before 2.4.0 are vulnerable to Insecure Defaults due to CORS Misconfiguration. All domains are whitelisted by default.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 41.2%
CVSS Severity
CVSS v3 Score 5.3
CVSS v2 Score 4.0
Products affected by CVE-2020-28481


Contact Us

Shodan ® - All rights reserved