Attacker Value
Unknown
(0 users assessed)
Exploitability
Unknown
(0 users assessed)
User Interaction
Unknown
Privileges Required
Unknown
Attack Vector
Unknown
0

CVE-2020-6926

Add MITRE ATT&CK tactics and techniques that apply to this CVE.

Description

CVE-2020-6926 is the most severe of three vulnerabilities in a September 25, 2020 HP advisory for its Device Manager software, which enables IT admins to remotely manage HP thin clients. CVEs included in the advisory are CVE-2020-6925 (weak cipher), CVE-2020-6926 (remote method invocation), and CVE-2020-6927 (local privilege escalation). Some of these vulnerabilities can be chained together to allow an unauthenticated, remote attacker to gain local SYSTEM privileges on a vulnerable target.

HP advisory: https://support.hp.com/us-en/document/c06921908

Add Assessment

No one has assessed this topic. Be the first to add your voice to the community.

General Information

Additional Info

Technical Analysis