CVE-2020-9048: victor Web Client - Arbitrary File Deletion Vulnerability
A vulnerability in specified versions of American Dynamics victor Web Client and Software House CCURE Web Client could allow a remote unauthenticated attacker on the network to delete arbitrary files on the system or render the system unusable by conducting a Denial of Service attack.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-9048.
What is the severity of CVE-2020-9048?
The severity of CVE-2020-9048 is high, with a severity value of 8.1.
Which software versions are affected by CVE-2020-9048?
Specified versions of American Dynamics victor Web Client (up to and including 5.4.1) and Software House CCURE Web Client (up to and including 2.80) are affected by CVE-2020-9048.
What can an attacker do with CVE-2020-9048?
An attacker can delete arbitrary files on the system or render the system unusable by conducting a Denial of Service attack.
How can I fix CVE-2020-9048?
To fix CVE-2020-9048, it is recommended to update to the latest patched versions of American Dynamics victor Web Client and Software House CCURE Web Client.