CVE-2020-2077

SICK Package Analytics software up to and including version V04.0.0 are vulnerable due to incorrect default permissions settings. An unauthorized attacker could read sensitive data from the system by querying for known files using the REST API directly.
Configurations

Configuration 1

cpe:2.3:a:sick:package_analytics:*:*:*:*:*:*:*:*

Information

Published : 2020-07-29 02:15

Updated : 2020-08-03 05:28


NVD link : CVE-2020-2077

Mitre link : CVE-2020-2077

Products Affected
No products.
CWE
CWE-276

Incorrect Default Permissions