HIGH

CVE-2020-28993

CVSS v3

7.5

HIGH

EPSS Score

13.2%

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

A Directory Traversal vulnerability exists in ATX miniCMTS200a Broadband Gateway through 2.0 and Pico CMTS through 2.0. Successful exploitation of this vulnerability would allow an unauthenticated attacker to retrieve administrator credentials by sending a malicious POST request.

Technical details

Published
12/1/2020

Frequently asked questions

What is CVE-2020-28993?

A Directory Traversal vulnerability exists in ATX miniCMTS200a Broadband Gateway through 2.0 and Pico CMTS through 2.0. Successful exploitation of this vulnerability would allow an unauthenticated attacker to retrieve administrator credentials by sending a malicious POST request.

Is CVE-2020-28993 actively exploited?

Active exploitation of CVE-2020-28993 has not been confirmed. The EPSS score is 13.2%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2020-28993?

CVE-2020-28993 has a CVSS v3 base score of 7.5 (HIGH severity).

Is CVE-2020-28993 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.