Nanometrics · Nanometrics Centaur · CVE-2020-12134
**Name of the Vulnerable Software and Affected Versions**
Nanometrics Centaur versions 4.3.23 and earlier
Nanometrics TitanSMA versions 4.2.20 and earlier
**Description**
The issue is related to inadequate access control in the syslog log handling. It may allow a remote attacker to elevate privileges by sending specially crafted HTTP packets.
**Recommendations**
For Nanometrics Centaur versions 4.3.23 and earlier, consider restricting access to the syslog log until a patch is available.
For Nanometrics TitanSMA versions 4.2.20 and earlier, restrict access to the syslog log to minimize the risk of exploitation.