HIGH

CVE-2020-14945

CVSS v3

8.8

HIGH

EPSS Score

15.8%

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

A privilege escalation vulnerability exists within Global RADAR BSA Radar 1.6.7234.24750 and earlier that allows an authenticated, low-privileged user to escalate their privileges to administrator rights (i.e., the BankAdmin role) via modified SaveUser data.

Technical details

Published
6/22/2020

Frequently asked questions

What is CVE-2020-14945?

A privilege escalation vulnerability exists within Global RADAR BSA Radar 1.6.7234.24750 and earlier that allows an authenticated, low-privileged user to escalate their privileges to administrator rights (i.e., the BankAdmin role) via modified SaveUser data.

Is CVE-2020-14945 actively exploited?

Active exploitation of CVE-2020-14945 has not been confirmed. The EPSS score is 15.8%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2020-14945?

CVE-2020-14945 has a CVSS v3 base score of 8.8 (HIGH severity).

Is CVE-2020-14945 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.