5.3
CVSSv3

CVE-2020-29666

Published: 10/12/2020 Updated: 14/12/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

In Lan ATMService M3 ATM Monitoring System 6.1.0, due to a directory-listing vulnerability, a remote attacker can view log files, located in /websocket/logs/, that contain a user's cookie values and the predefined developer's cookie value.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

lanatmservice m3 atm monitoring system 6.1.0

Github Repositories

CVE-2020-29666 Directory Listing [Suggested description] In Lan ATMService M3 ATM Monitoring System 610, due to a directory listing vulnerability, a remote attacker can view log files, located in /websocket/logs/, that contain a user's cookie values and the predefined developer's cookie value [Additional Information] A letter was sent to the vendor about the vulner