CVE-2020-37094 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

EspoCRM 5.8.5 contains an authentication vulnerability that allows attackers to access other user accounts by manipulating authorization headers. Attackers can…
High CVSS: 8.7

CVE-2020-37094

EspoCRM 5.8.5 contains an authentication vulnerability that allows attackers to access other user accounts by manipulating authorization headers. Attackers can decode and modify Basic Authorization and Espo-Authorization tokens to gain unauthorized access to administrative user information and privileges.
Vendor
Espocrm
Product
Espocrm
CWE
CWE-639
Yayın Tarihi
2026-02-03 22:16:25
Güncelleme
2026-03-03 14:59:29
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-

Kategoriler

Referanslar