668
VMScore

CVE-2020-14011

Published: 15/06/2020 Updated: 26/04/2022
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Lansweeper 6.0.x up to and including 7.2.x has a default installation in which the admin password is configured for the admin account, unless "Built-in admin" is manually unchecked. This allows command execution via the Add New Package and Scheduled Deployments features.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

lansweeper lansweeper

Exploits

Lansweeper version 72 has a default admin account enabled which allows for remote code execution ...